Category: Uncategorized
-
Rockwell ThinManager Vulnerabilities Could Expose Industrial HMIs to Attacks Eduard Kovacs
Rockwell Automation ThinManager ThinServer vulnerabilities could allow remote attackers to take control of servers and hack HMIs. The post Rockwell ThinManager Vulnerabilities Could Expose Industrial HMIs to Attacks appeared first on SecurityWeek. Read More
-

The Hidden Dangers of Public Wi-Fi [email protected] (The Hacker News)
Public Wi-Fi, which has long since become the norm, poses threats to not only individual users but also businesses. With the rise of remote work, people can now work from virtually anywhere: a cafe close to home, a hotel in a different city, or even while waiting for a plane at the airport. Next, let’s…
-

New “Whiffy Recon” Malware Triangulates Infected Device Location via Wi-Fi Every Minute [email protected] (The Hacker News)
The SmokeLoader malware is being used to deliver a new Wi-Fi scanning malware strain called Whiffy Recon on compromised Windows machines. “The new malware strain has only one operation. Every 60 seconds it triangulates the infected systems’ positions by scanning nearby Wi-Fi access points as a data point for Google’s geolocation API,” Secureworks Counter Threat Unit (CTU) said in…
-

WinRAR Security Flaw Exploited in Zero-Day Attacks to Target Traders [email protected] (The Hacker News)
A recently patched security flaw in the popular WinRAR archiving software has been exploited as a zero-day since April 2023, new findings from Group-IB reveal. The vulnerability, cataloged as CVE-2023-38831, allows threat actors to spoof file extensions, thereby making it possible to launch malicious scripts contained within an archive that masquerades as seemingly innocuous image or…
-
Digital Identity Protection Firm SpyCloud Raises $110 Million Ionut Arghire
Account takeover and fraud protection firm SpyCloud has raised $110 million in a growth funding round led by Riverwood Capital. The post Digital Identity Protection Firm SpyCloud Raises $110 Million appeared first on SecurityWeek. Read More
-
Traders Targeted by Cybercriminals in Attack Exploiting WinRAR Zero-Day Eduard Kovacs
A financially motivated cybercrime group has exploited a WinRAR zero-day to deliver malware to traders and steal their money. The post Traders Targeted by Cybercriminals in Attack Exploiting WinRAR Zero-Day appeared first on SecurityWeek. Read More
-
Hosting Provider CloudNordic Loses All Customer Data in Ransomware Attack Ionut Arghire
Danish cloud hosting provider CloudNordic says most customers lost all data after ransomware shut down all its systems and servers. The post Hosting Provider CloudNordic Loses All Customer Data in Ransomware Attack appeared first on SecurityWeek. Read More
-
UK Court Concludes Teenager Behind Huge Hacking Campaign AFP
A UK court has found a teenager responsible for a hacking campaign that included one of the biggest breaches in the history of the video game industry. The post UK Court Concludes Teenager Behind Huge Hacking Campaign appeared first on SecurityWeek. Read More
-

Thousands of Unpatched Openfire XMPP Servers Still Exposed to High-Severity Flaw [email protected] (The Hacker News)
Thousands of Openfire XMPP servers are unpatched against a recently disclosed high-severity flaw and are susceptible to a new exploit, according to a new report from VulnCheck. Tracked as CVE-2023-32315 (CVSS score: 7.5), the vulnerability relates to a path traversal vulnerability in Openfire’s administrative console that could permit an unauthenticated attacker to access otherwise restrictedRead More
-

Tornado Cash Founders Charged in Billion-Dollar Crypto Laundering Scandal [email protected] (The Hacker News)
The U.S. Justice Department (DoJ) on Wednesday unsealed an indictment against two founders of the now-sanctioned Tornado Cash cryptocurrency mixer service, charging them with laundering more than $1 billion in criminal proceeds. Both the individuals, Roman Storm and Roman Semenov, have been charged with conspiracy to commit money laundering, conspiracy to commit sanctions violations, andRead More
