Summary

Total Articles Found: 23

Top sources:

Top Keywords:

Top Authors

Top Articles:

  • Signal CEO gives mobile-hacking firm a taste of being hacked
  • CosmicStrand UEFI malware found in Gigabyte, ASUS motherboards
  • Google Advises Upgrade to Windows 10 to Fix Windows 7 Zero-Day Bug
  • Source code from dozens of companies leaked online
  • Microsoft-Owned GitHub Limits Devs in US-Sanctioned Countries
  • Adobe Acrobat may block antivirus tools from monitoring PDF files
  • APC UPS zero-day bugs can remotely burn out devices, disable power
  • New Nimbuspwn Linux vulnerability gives hackers root privileges
  • Critical Android Bluetooth Flaw Exploitable without User Interaction
  • Windows 10 SMBGhost bug gets public proof-of-concept RCE exploit

CosmicStrand UEFI malware found in Gigabyte, ASUS motherboards

Published: 2022-07-26 01:37:04

Popularity: 1415

Author: Ionut Ilascu

Keywords:

  • Security
  • Chinese-speaking hackers have been using since at least 2016 malware that lies virtually undetected in the firmware images for some motherboards, one of the most persistent threats commonly known as a UEFI rootkit. [...]

    ...more

    Holy Ghost ransomware operation linked to North Korean hackers

    Published: 2022-07-14 23:10:16

    Popularity: 36

    Author: Ionut Ilascu

    Keywords:

  • Security
  • For more than a year, North Korean hackers have been running a ransomware operation called HolyGhost, attacking small businesses in various countries. [...]

    ...more

    Online programming IDEs can be used to launch remote cyberattacks

    Published: 2022-07-07 14:26:41

    Popularity: 110

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Security researchers are warning that hackers can abuse online programming learning platforms to remotely launch cyberattacks, steal data, and scan for vulnerable devices, simply by using a web browser. [...]

    ...more

    Adobe Acrobat may block antivirus tools from monitoring PDF files

    Published: 2022-06-21 18:44:06

    Popularity: 829

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Security researchers found that Adobe Acrobat is trying to block security software from having visibility into the PDF files it opens, creating a security risk for the users. [...]

    ...more

    Thousands of GitHub, AWS, Docker tokens exposed in Travis CI logs

    Published: 2022-06-15 07:21:23

    Popularity: 92

    Author: Ionut Ilascu

    Keywords:

  • Security
  • For a second time in less than a year, the Travis CI platform for software development and testing has exposed user data containing authentication tokens that could give access to developers' accounts on GitHub, Amazon Web Services, and Docker Hub. [...]

    ...more

    Researchers to release exploit for new VMware auth bypass, patch now

    Published: 2022-05-24 14:16:24

    Popularity: 165

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Proof-of-concept exploit code is about to be published for a vulnerability that allows administrative access without authentication in several VMware products. [...]

    ...more

    New Nimbuspwn Linux vulnerability gives hackers root privileges

    Published: 2022-04-27 05:59:35

    Popularity: 592

    Author: Ionut Ilascu

    Keywords:

  • Security
  • A new set of vulnerabilities collectively tracked as Nimbuspwn could let local attackers escalate privileges on Linux systems to deploy malware ranging from backdoors to ransomware. [...]

    ...more

    APC UPS zero-day bugs can remotely burn out devices, disable power

    Published: 2022-03-09 00:08:59

    Popularity: 668

    Author: Ionut Ilascu

    Keywords:

  • Security
  • A set of three critical zero-day vulnerabilities now tracked as TLStorm could let hackers take control of uninterruptible power supply (UPS) devices from APC, a subsidiary of Schneider Electric. [...]

    ...more

    Jenkins project's Confluence server hacked to mine Monero

    Published: 2021-09-07 15:46:41

    Popularity: 91

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Hackers exploiting the recently disclosed Atlassian Confluence remote code execution vulnerability breached an internal server from the Jenkins project. [...]

    ...more

    Critical Microsoft Hyper-V bug could haunt orgs for a long time

    Published: 2021-07-28 13:30:06

    Popularity: 258

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Technical details are now available for a vulnerability that affects Hyper-V, Microsoft's native hypervisor for creating virtual machines on Windows systems and in Azure cloud computing environment. [...]

    ...more

    Signal CEO gives mobile-hacking firm a taste of being hacked

    Published: 2021-04-21 23:13:50

    Popularity: 1625

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Software developed by data extraction company Cellebrite contains vulnerabilities that allow arbitrary code execution on the device, claims Moxie Marlinspike, the creator of the encrypted messaging app Signal. [...]

    ...more

    Source code from dozens of companies leaked online

    Published: 2020-07-27 07:33:44

    Popularity: 1004

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Source code from exposed repositories of dozens of companies across various fields of activity (tech, finance, retail, food, eCommerce, manufacturing) is publicly available as a result of misconfigurations in their infrastructure. [...]

    ...more

    Bug in ‘USB for Remote Desktop’ lets hackers add fake devices

    Published: 2020-06-17 14:37:39

    Popularity: 159

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Google
  • An unpatched vulnerability in software that redirects local USB devices to a remote system could help attackers elevate privileges on a target machine by adding fake devices. [...]

    ...more

    Windows 10 SMBGhost bug gets public proof-of-concept RCE exploit

    Published: 2020-06-05 17:47:00

    Popularity: 365

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Working exploit code that achieves remote code execution on Windows 10 machines is now publicly available for CVE-2020-0796, a critical vulnerability in Microsoft Server Message Block (SMB 3.1.1). [...]

    ...more

    DDR4 Memory Still At Rowhammer Risk, New Method Bypasses Fixes

    Published: 2020-03-11 18:27:26

    Popularity: 93

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Academic researchers testing modern memory modules from Samsung, Micron, and Hynix discovered that current protections against Rowhammer attacks are insufficient. [...]

    ...more

    Critical Android Bluetooth Flaw Exploitable without User Interaction

    Published: 2020-02-07 00:44:10

    Popularity: 517

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Android users are urged to apply the latest security patches released for the operating system on Monday that address a critical vulnerability in the Bluetooth subsystem. [...]

    ...more

    Critical Remote Code Execution Bug Fixed in OpenBSD SMTP Server

    Published: 2020-01-29 15:51:36

    Popularity: 86

    Author: Ionut Ilascu

    Keywords:

  • Security
  • A critical vulnerability in the free OpenSMTPD email server present in many Unix-based systems can be exploited to run shell commands with root privileges. [...]

    ...more

    MDhex Critical Vulnerabilities Shake the Healthcare Sector

    Published: 2020-01-23 19:01:49

    Popularity: 98

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Critical vulnerabilities have been discovered in popular medical devices from GE Healthcare that could allow attackers to alter the way they function or render them unusable. [...]

    ...more

    Bulletproof Hosting Service in Former NATO Bunker Goes Down

    Published: 2019-09-30 07:23:14

    Popularity: 308

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Authorities in Germany this week shut down the services of a bulletproof hosting provider set up in a former NATO bunker that went five floors underground. [...]

    ...more

    Microsoft-Owned GitHub Limits Devs in US-Sanctioned Countries

    Published: 2019-07-27 17:06:33

    Popularity: 903

    Author: Ionut Ilascu

    Keywords:

  • Security
  • A developer in the Eastern European region of Crimea has found himself at the receiving end of limitations to his GitHub account due to trade control regulations imposed by the US. [...]

    ...more

    Unofficial Telegram App with 100K Installs Pushed Malicious Sites

    Published: 2019-07-16 01:35:14

    Popularity: 95

    Author: Ionut Ilascu

    Keywords:

  • Security
  • An app styling itself as a more feature-rich unofficial version of Telegram was installed over 100,000 from Google Play only to provide minimum messaging services and to promote malicious websites. [...]

    ...more

    Fake DeepNude Downloads Gives You Malware Instead of Nudes

    Published: 2019-07-12 09:44:55

    Popularity: 139

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Cybercriminals are using the notoriety of the DeepNude app to distribute info-stealing malware in campaigns over YouTube that promise a cracked premium version of the program for Windows, Android, and iOS. [...]

    ...more

    Google Advises Upgrade to Windows 10 to Fix Windows 7 Zero-Day Bug

    Published: 2019-03-08 00:01:32

    Popularity: 1249

    Author: Ionut Ilascu

    Keywords:

  • Security
  • Google recommends users of Windows 7 to give it up and move to Microsoft's latest operating system if they want to keep systems safe from a zero-day vulnerability exploited in the wild. [...]

    ...more

    end