Security
Headlines
HeadlinesLatestCVEs

Source

Threatpost

Multiple BusyBox Security Bugs Threaten Embedded Linux Devices

Researchers discovered 14 vulnerabilities in the ‘Swiss Army Knife’ of the embedded OS used in many OT and IoT environments. They allow RCE, denial of service and data leaks.

Threatpost
#Malware#Vulnerabilities#Web Security#Cloud Security#Sponsored#Web Security#vulnerability#InfoSec Insider#Malware#Web Security#Breach#Web Security#Cloud Security#Critical Infrastructure#IoT#Vulnerabilities#vulnerability#linux#dos
REvil Affiliates Arrested; DOJ Seizes $6.1M in Ransom

The U.S. is seeking the extradition of a Ukrainian man, Yaroslav Vasinskyi, whom they suspect is behind the Kaseya supply-chain attacks and other REvil attacks.

Zebra2104 Initial Access Broker Supports Rival Malware Gangs, APTs

Researchers have uncovered a large, tangled web of infrastructure being used to enable a wide variety of cyberattacks.

Zoho Password Manager Flaw Torched by Godzilla Webshell

Researchers have spotted a second, worldwide campaign exploiting the Zoho zero-day: one that’s breached defense, energy and healthcare organizations.

Native Tribal Casinos Taking Millions in Ransomware Losses

An FBI notification is warning of an uptick in attacks against tribal casinos.

BrakTooth Bluetooth Bugs Bite: Exploit Code, PoC Released

CISA is urging vendors to patch, given the release of public exploit code & a proof of concept tool for bugs that open billions of devices – phones, PCs, toys, etc. – to DoS & code execution.

Beyond the Basics: Tips for Building Advanced Ransomware Resiliency

Joseph Carson, chief security scientist and advisory CISO at ThycoticCentrify, offers advice on least privilege, automation, application control and more.