Netherlands police’s high-tech crime unit has arrested an 18-year-old man on suspicion of launching distributed denial-of-service (DDoS) attacks on the Dutch tax authority, tech site Tweakers, and internet service provider Tweak. The police said the teenager, known only as ‘Jelle S’, is also suspected of attacking the online bank Bunq. […]
Hacking
All Ledger hardware wallets vulnerable to man in the middle attack
Ledger hardware wallet that is currently operating in the cryptocurrency market is vulnerable to cyber attacks. The vulnerability was identified by unknown security researchers in every single hardware wallet that allows cybercriminals to show fraudulent addresses to Ledger users/customers. When funds are requested to these addresses, the cryptocurrency is transferred to […]
Joomla! 3.8.3: Privilege Escalation via SQL Injection
Joomla! is one of the biggest players in the market of content management systems. Its easy installation, usage, and extensibility make it the second most used CMS on the web next to WordPress1. Last year, our PHP static code analysis solution unveiled a rare LDAP injection vulnerability within the 500,000 […]
MacUpdate Hacked to Distribute Mac Cryptocurrency Miner
Another day, another cryptocurrency miner targeting users – This time, MacUpdate site has been hacked to drop cryptocurrency miner on Mac devices. MacUpdate, a well-known software download, and aggregator platform, has become a victim of a hack attack and the service is now distributing cryptocurrency miners to Mac users, revealed […]
Adobe rolled out an emergency patch that fixed CVE-2018-4878 flaw exploited by North Korea
Adobe rolled out an emergency patch that fixed two critical remote execution vulnerabilities, including the CVE-2018-4878 flaw exploited by North Korea. Adobe has rolled out an emergency patch to address two Flash player vulnerabilities after North Korea’s APT group was spotted exploiting one of them in targeted attacks. Last week, […]
Researcher Claims Hotspot Shield VPN Service Exposes You on the Internet
Virtual Private Network (VPN) is one of the best solutions you can have to protect your privacy and data on the Internet, but you should be more vigilant while choosing a VPN service which truly respects your privacy. If you are using the popular VPN service Hotspot Shield for online […]
Uber quits GitHub for in-house code after 2016 data breach
Code trove wasn’t to blame: Uber didn’t have multifactor authentication on repos that included AWS credentials Uber’s confessed that it didn’t use multifactor authentication on its GitHub account, an omission ultimately led to the data breach it revealed in 2017 after keeping it secret for more than a year, after […]
US Makes First Arrests of Suspects Behind ATM Jackpotting Attacks
US authorities have made arrests of several suspects they believe are behind the first ATM jackpotting incidents in the US. Law enforcement officials arrested four suspects last October and November, and apprehended another two at the end of last month, January 2018. Investigators believe these six men have infected ATMs […]
JENX BOTNET HAS GRAND THEFT AUTO HOOK
Researchers at Radware have discovered a new botnet that uses vulnerabilities linked with the Satori botnet and is leveraging the Grand Theft Auto videogame community to infect IoT devices. Satori is a derivative of Mirai, the notorious botnet that in 2016 infamously managed to take down Dyn, a DNS hosting […]
US charges two over ATM jackpotting scheme
US authorities have charged two men with bank fraud after they allegedly used malware to jackpot ATMs and empty the machines of cash. Last week it emerged that the US Secret Service has been warning banks and ATM manufacturers that jackpotting has finally hit American shores. The scam usually sees […]