Common Vulnerabilities and Exposures (CVE) stories - Page 20
the IoTroop botnet: Could it be the next 'cyber hurricane'?
Wed, 25th Oct 2017
#
ddos
#
iot
#
botnet
The rapid evolution of 'IoTroop' is happening much faster than the Mirai botnet; and it is enslaving IoT devices at a faster rate too.
Chinese 'Bronze Butler' group suspected of stealing IP from Japan
Tue, 17th Oct 2017
#
firewalls
#
network infrastructure
#
network security
Chinese cyber spies, Bronze Butler, steal Japanese IP in a prolonged espionage campaign targeting technology sectors.
Monero cryptocurrency miner enslaves Windows Server 2003 systems in botnet
Mon, 2nd Oct 2017
#
malware
#
datacentre infrastructure
#
crypto
A malicious cryptocurrency miner is infecting vulnerable Windows web servers worldwide, creating a botnet and mining Monero cryptocurrency.
Equifax and its 143m customers just the 'first known victims'
Tue, 19th Sep 2017
#
supply chain
#
cybersecurity
#
flexera
Equifax breach reveals well-known vulnerability, patch available long before attack, says Flexera. More hacks likely to come.
Experts comment: Behind the Bluetooth 'BlueBorne' zero-days
Thu, 14th Sep 2017
#
ai security
#
ai
#
bluetooth
As news spreads of the Bluetooth zero-day that affects more than 5 billion devices, security experts are warning users to use Bluetooth with caution.
State-sponsored election hacks are acts of cyber warfare - survey
Mon, 11th Sep 2017
#
elections
#
venafi
#
security vulnerabilities
78% of respondents said they would deem an act as cyber war if a nation-state was behind a successful or attempted hack of another country's election.
Apache Struts users warned to upgrade now as 'matter of urgency'
Fri, 8th Sep 2017
#
martech
#
software development
#
java
Urgent call for updates: Apache Struts hit by critical vulnerability, CVE-2017-9805, risking remote code execution.
Foxit acknowledges zero-days in its PDF software, but no patches yet
Mon, 21st Aug 2017
#
pdf
#
zero day malware
#
foxit
Two zero-day vulnerabilities in Foxit Reader and PhantomPDF can allow attackers to execute malicious code on startup. Safe Reading Mode is recommended.
Tesla owners beware! Security researchers find major holes - firmware updates critical
Tue, 1st Aug 2017
#
cartech
#
tencent
#
tesla
Researchers at Tencent's Keen Security Lab discovered major security holes in Tesla's firmware, which attackers could use to control vehicles.
iOS gets another round of critical security updates to block major security holes
Thu, 27th Jul 2017
#
cybersecurity
#
ios
#
software updates
Apple's iOS 10.3.3 has undergone an urgent update after massive security holes were discovered in many of the system's functions.
New version of SambaCry spotted in the wild: Linux users urged to update OS
Fri, 21st Jul 2017
#
malware
#
open source
#
cybersecurity
Linux users face fresh cyber threat as new SambaCry variant emerges; experts urge immediate system updates to thwart attacks.
Fortinet: Cybercrime ditches regional targets & goes for global 'element of surprise'
Tue, 13th Jun 2017
#
malware
#
firewalls
#
network infrastructure
According to Fortinet's Global Threat Landscape Report, attackers are always looking for 'the element of surprise'.
Big changes in the infosec landscape: Time to take note and take action
Mon, 15th May 2017
#
malware
#
breach prevention
#
cybersecurity
Do you like RDP? Good. So do attackers. Wait? What?! Yes, attackers love your weakly-defended RDP port as the payoff can be huge.
Business events set to showcase Auckland's entrepreneurial potential to World Masters athletes
Mon, 24th Apr 2017
#
network infrastructure
#
sdn
#
naas
ATEED to showcase Auckland's entrepreneurial potential during World Masters Games, taking advantage of influx of visitors.
China's green vision: More electric cars!
Mon, 24th Apr 2017
#
cartech
#
hybrid & remote work
#
wfh
General Motors plans to launch 10 electric and hybrid vehicles in China by 2020, under pressure from Beijing. #ElectricVehicles #China.
Zero day distributing FINSPY espionage malware and LATENTBOT malware
Tue, 18th Apr 2017
#
malware
#
breach prevention
#
cybersecurity
FireEye recently identified a vulnerability – CVE-2017-0199 – that allows a malicious actor to download and execute a Visual Basic script.
NETGEAR committed to proactive approach in router vulnerability saga
Thu, 2nd Feb 2017
#
netgear
#
router
#
trustwave
NETGEAR routers plagued by major vulnerability, Trustwave warns. Company says it has been working to evaluate and fix the issue.
Trustwave uncovers major vulnerabilities in NETGEAR routers
Tue, 31st Jan 2017
#
netgear
#
router
#
trustwave
Trustwave researchers have discovered vulnerability in 31 models of NETGEAR routers, potentially affecting millions of devices.
DragonOK updates toolset and targets multiple geographic regions
Tue, 10th Jan 2017
#
malware
#
firewalls
#
network infrastructure
The DragonOK group has been actively launching attacks for years. While Japan is still the most heavily targeted geographic region, it is spreading.
Siemens-branded CCTV webcams require urgent firmware patch
Thu, 1st Dec 2016
#
ddos
#
surveillance
#
healthtech
Siemens-branded IP-based CCTV cameras are the latest internet-connected devices to be found vulnerable to hacking attacks.