Dec 13, 2024Ravie LakshmananCyber Attack / Malware
A now-removed GitHub repository that advertised a WordPress tool to publish posts to the online content management...
Dec 13, 2024The Hacker NewsLinux / Vulnerability
A security flaw has been disclosed in OpenWrt's Attended Sysupgrade (ASU) feature that, if successfully exploited, could...
Run by the team at orchestration, AI, and automation platform Tines, the Tines library contains pre-built workflows shared by real security practitioners from...
Dec 13, 2024The Hacker NewsIoT Security / Operational Technology
Iran-affiliated threat actors have been linked to a new custom malware that's geared toward IoT...
Dec 13, 2024Ravie LakshmananLinux / Threat Analysis
Cybersecurity researchers have uncovered a new Linux rootkit called PUMAKIT that comes with capabilities to escalate privileges,...
The U.S. Department of Justice (DoJ) on Thursday announced the shutdown of an illicit marketplace called Rydox ("rydox.ru" and "rydoxcc") for selling stolen...
Dec 12, 2024Ravie LakshmananMobile Security / Cyber Espionage
The Russia-linked state-sponsored threat actor tracked as Gamaredon has been attributed to two new Android spyware...
Dec 12, 2024Ravie LakshmananVulnerability / Cloud Security
Cybersecurity researchers are warning that thousands of servers hosting the Prometheus monitoring and alerting toolkit are at...