News
-
"A New Mirai Botnet Variant Targets TP-Link Archer A21"The Zero Day Initiative (ZDI) threat-hunting team observed the Mirai botnet attempting to exploit a vulnerability, tracked as CVE-2023-1389 with a CVSS score of 8.8, also known as ZDI-CAN-19557/ZDI-23-451 in TP-Link Archer AX21 Wi-Fi routers. The flaw is…
-
"MedCrypt Funds Medical Device Usable Security Research at the School of Engineering at Tufts University"MedCrypt, a provider of proactive cybersecurity solutions for medical device manufacturers, has announced its financial support for a fellowship program at Tufts University's School of Engineering that will fund research into medical device security and…
-
"The Car Thieves Using Tech Disguised Inside Old Nokia Phones and Bluetooth Speakers"Researchers have further explored the world of car hacking. A new type of vehicle theft is spreading across the US. To gain access to a vehicle's control system, criminals can use small devices, which are sometimes hidden within seemingly harmless…
-
"AI-Generated Spam May Soon Be Flooding Your Inbox – And It Will Be Personalized to Be Especially Persuasive"The battle between spam blockers and spammers will intensify as generative Artificial Intelligence (AI) emerges as a new weapon. Recent AI advancements made by ChatGPT could provide spammers with new tools to evade filters, capture people's attention,…
-
"Google Audit Finds Vulnerabilities in Intel TDX"Google recently published the results of a nine-month audit of Intel Trust Domain Extensions (TDX), which resulted in the discovery of ten security defects. Providing hardware isolated virtual machines, TDX has been added to some Intel Xeon…
-
"Data Security Breach May Have Left Jewel-Osco Employees' Information Exposed"Thousands of Jewel-Osco employees might have had their personal information exposed in a data breach. In a letter sent to employees by Jewel-Osco parent company Albertsons last week, the letter said hackers were able to infiltrate Albertsons…
-
"Yellow Pages Canada Hit by Cyberattack, Black Basta Claims Credit"Yellow Pages Canada has recently discovered that it has been the victim of a cyberattack. The company stated that a data breach affected some employee and business customer data, though the company did not specify what type of data in particular.…
-
"Researchers Find 250 Million Artifacts Exposed in Misconfigured Registries"Security researchers at Aqua Nautilus have recently discovered thousands of misconfigured artifact repositories and container image registries, exposing organizations to potentially serious software supply chain attacks. The researchers found that…
-
"Hackers to Show They Can Take Over a European Space Agency Satellite"Cybersecurity researchers will reveal how they took control of a European Space Agency (ESA) satellite in what is considered the world's first ethical satellite hacking exercise. Experts from the French defense giant Thales, together with members of the…
-
"New SLP Vulnerability Could Let Attackers Launch 2200x Powerful DDoS Attacks"A high-severity security vulnerability is impacting Service Location Protocol (SLP). The vulnerability could be exploited to launch volumetric Denial-of-Service attacks against targets. Bitsight and Curesec researchers stated that attackers exploiting…
-
"Intel CPUs Vulnerable to New Transient Execution Side-Channel Attack"Researchers have discovered a new side-channel attack impacting multiple generations of Intel CPUs. It allows data leakage via the EFLAGS register. Researchers from Tsinghua University, the University of Maryland, and a computer lab operated by the…
-
"Attackers Are Logging in Instead of Breaking In"According to Sophos, cyberattackers used more than 500 unique tools and tactics in 2022. The analysis of data from over 150 Sophos Incident Response (IR) cases revealed over 500 unique tools and techniques, including 118 Living off the Land binaries (…