New Strain of Sotdas Malware Discovered
https://blog.qualys.com/vulnerabilities-threat-research/2023/05/17/new-strain-of-sotdas-malware-discovered
https://blog.qualys.com/vulnerabilities-threat-research/2023/05/17/new-strain-of-sotdas-malware-discovered
Qualys
New Strain of Sotdas Malware Discovered | Qualys
There are numerous malicious codes that are currently active on smart devices, such as Ddosf, Dofloo, Gafgyt, MrBlack, Persirai, Sotdas, Tsunami, Triddy, Mirai, Moose, and Satori, among others.
Wago License Page Exploit
https://onekey.com/blog/security-advisory-wago-unauthenticated-remote-command-execution
https://onekey.com/blog/security-advisory-wago-unauthenticated-remote-command-execution
Onekey
Security Advisory: Unauthenticated Remote Command Execution in Multiple WAGO Products | ONEKEY Research | Research | ONEKEY
Security Advisory: Critical unauthenticated command injection vulnerability in the "Legal Information" plugin of the WAGO Series PFC100 web interface.
8220 Gang Evolves With New Strategies
https://www.trendmicro.com/en_us/research/23/e/8220-gang-evolution-new-strategies-adapted
https://www.trendmicro.com/en_us/research/23/e/8220-gang-evolution-new-strategies-adapted
‘FriendlyName’ Buffer Overflow Vulnerability in Wemo Smart Plug V2
https://sternumiot.com/iot-blog/mini-smart-plug-v2-vulnerability-buffer-overflow
https://sternumiot.com/iot-blog/mini-smart-plug-v2-vulnerability-buffer-overflow
Sternum IoT
‘FriendlyName’ Buffer Overflow Vulnerability in Wemo Smart Plug V2 | Sternum IoT
Manufacturer chooses not to patch the Sternum-identified buffer overflow vulnerability (CVE-2023-27217) in the Wemo Mini Smart Plug V2.
CVE-2023-20869/20870: Exploiting VMware Workstation at Pwn2own Vancouver
https://www.zerodayinitiative.com/blog/2023/5/17/cve-2023-2086920870-exploiting-vmware-workstation-at-pwn2own-vancouver
https://www.zerodayinitiative.com/blog/2023/5/17/cve-2023-2086920870-exploiting-vmware-workstation-at-pwn2own-vancouver
🔥1
Maximizing Information Gathering while Avoiding Detection for Red Teams
https://www.trustedsec.com/blog/walking-the-tightrope-maximizing-information-gathering-while-avoiding-detection-for-red-teams
https://www.trustedsec.com/blog/walking-the-tightrope-maximizing-information-gathering-while-avoiding-detection-for-red-teams
TrustedSec
Walking the Tightrope: Maximizing Information Gathering while…
If you’re currently not in this space or have taken classes on red teaming, internal discovery is usually a couple of bullet points or hyper-focused on…
ReversingLabs Exposes TurkoRat: A Stealthy Infostealer Infiltrating the npm Platform
https://securityonline.info/reversinglabs-exposes-turkorat-a-stealthy-infostealer-infiltrating-the-npm-platform/
https://securityonline.info/reversinglabs-exposes-turkorat-a-stealthy-infostealer-infiltrating-the-npm-platform/
Cybersecurity News
ReversingLabs Exposes TurkoRat: A Stealthy Infostealer Infiltrating the npm Platform
TurkoRat, a pernicious open-source infostealer, was found to have surreptitiously infiltrated the npm platform for two months
10 Million Dollar Bounty: The Hunt for Ransomware Kingpin Mikhail Matveev
https://securityonline.info/10-million-dollar-bounty-the-hunt-for-ransomware-kingpin-mikhail-matveev/
https://securityonline.info/10-million-dollar-bounty-the-hunt-for-ransomware-kingpin-mikhail-matveev/
Cybersecurity News
10 Million Dollar Bounty: The Hunt for Ransomware Kingpin Mikhail Matveev
A bounty has been placed on Russian ransomware developer Mikhail Matveev under the U.S. Treasury Department's Transnational Organized Crime Rewards Program
PoC Exploit Released for Critical Microsoft Message Queuing RCE (CVE-2023-21554) Bug
https://securityonline.info/poc-exploit-released-for-critical-microsoft-message-queuing-rce-cve-2023-21554-bug/
https://securityonline.info/poc-exploit-released-for-critical-microsoft-message-queuing-rce-cve-2023-21554-bug/
Cybersecurity News
PoC Exploit Released for Critical Microsoft Message Queuing RCE (CVE-2023-21554) Bug
PoC exploit code has been made available for the CVE-2023-21554 bug, making it imperative that users move quickly to apply the patches
🔥1
Boot Ubuntu Server 22.04 LTS from USB SSD on Raspberry Pi 4
https://www.blackmoreops.com/2023/05/19/boot-ubuntu-server-22-04-lts-from-usb-ssd-on-raspberry-pi-4/
https://www.blackmoreops.com/2023/05/19/boot-ubuntu-server-22-04-lts-from-usb-ssd-on-raspberry-pi-4/
blackMORE Ops
Boot Ubuntu Server 22.04 LTS from USB SSD on Raspberry Pi 4
This is a guide for configuring Raspberry Pi4 to boot Ubuntu from external USB SSD drive instead of SD card. SSD drives are much faster than SD cards, more reliable and now lower cost than SD cards…
Keeper Password Vulnerability Let Hackers Gain the Master Password
https://gbhackers.com/keeper-password-vulnerability/
https://gbhackers.com/keeper-password-vulnerability/
Google Upgrades Its Vulnerability Reward Program Rules For Android, Devices
https://latesthackingnews.com/2023/05/19/google-upgrades-its-vulnerability-reward-program-rules-for-android-devices/
https://latesthackingnews.com/2023/05/19/google-upgrades-its-vulnerability-reward-program-rules-for-android-devices/
LHN
Google Upgrades Its Vulnerability Reward Program Rules For Android, Devices
Google recently announced significant updates to its Vulnerability Reward Program for Android OS and devices. As elaborated, Google will now employ new rating criteria for the vulnerability reports ensuring better security impact. Google Android, Devices…
Luxottica confirms 2021 data breach after info of 70M leaks online
https://www.bleepingcomputer.com/news/security/luxottica-confirms-2021-data-breach-after-info-of-70m-leaks-online/
https://www.bleepingcomputer.com/news/security/luxottica-confirms-2021-data-breach-after-info-of-70m-leaks-online/
BleepingComputer
Luxottica confirms 2021 data breach after info of 70M leaks online
Luxottica has confirmed one of its partners suffered a data breach in 2021 that exposed the personal information of 70 million customers after a database was posted this month for free on hacking forums.
Hardware vulnerability in Intel processors | Kaspersky official blog
https://www.kaspersky.com/blog/transient-cpu-eflags/48229/
https://www.kaspersky.com/blog/transient-cpu-eflags/48229/
Kaspersky
Hardware vulnerability in Intel processors
Spring 2023 saw the discovery of another hardware vulnerability in Intel processors.
Dish Network likely paid ransom after recent ransomware attack
https://www.bleepingcomputer.com/news/security/dish-network-likely-paid-ransom-after-recent-ransomware-attack/
https://www.bleepingcomputer.com/news/security/dish-network-likely-paid-ransom-after-recent-ransomware-attack/
BleepingComputer
Dish Network likely paid ransom after recent ransomware attack
Dish Network, an American television provider, most likely paid a ransom after being hit by a ransomware attack in February based on the wording used in data breach notification letters sent to impacted employees.
CVE-2023-32960: CSRF Flaw in WordPress UpdraftPlus Plugin with three million active installations
https://securityonline.info/cve-2023-32960-csrf-flaw-in-wordpress-updraftplus-plugin-with-three-million-active-installations/
https://securityonline.info/cve-2023-32960-csrf-flaw-in-wordpress-updraftplus-plugin-with-three-million-active-installations/
Cybersecurity News
CVE-2023-32960: CSRF Flaw in WordPress UpdraftPlus Plugin with three million active installations
The CVE-2023-32960 vulnerability could lead to a more insidious Stored Site-Wide Cross-Site Scripting (XSS) attack on the wp-admin area