Security researchers have discovered several severe vulnerabilities and a secret hard-coded backdoor in Western Digital’s My Cloud NAS devices that could allow remote attackers to gain unrestricted root access to the device. Western Digital’s My Cloud (WDMyCloud) is one of the most popular network-attached storage devices which is being used […]
Hacking
Le botnet PyCryptoMiner transforme votre système Linux en mineur de crypto-monnaie
Les experts des réseaux F5 ont découvert un nouveau botnet de crypto-monnaies qui cible les systèmes Linux et se propage à travers le protocole SSH. Pour infecter des serveurs SSH vulnérables, l’opérateur derrière le botnet nommé PyCryptoMiner, procède par des attaques par force brute. En cas de succès, celui-ci se […]
Fake Android apps caught dropping Coinhive miner
In October last year, three Android apps on Play Store were found infected with Coinhive cryptocurrency miner to generate Monero digital coins. Now, an IT security researcher Elliot Alderson found fake Android apps that are infected with Coinhive cryptocurrency miner specially developed to use the CPU power of a targeted device. Fake App […]
Public WiFi Used for Mining Bitcoin
Hackers took crypto-currency mining one step further when a public WiFi in the world famous coffee chain Starbucks was used to mine Bitcoins . This case took place in Bueno Aires, Argentina, when the CEO of an email providing company ‘Stensul’, noticed a delay of 10 seconds in his connection. […]
Private Details of 240,000 DHS Employees Accessed after Data Breach
A data breach targeted towards the Department of Homeland Security (DHS) has resulted in the exposure of personally identifiable information of over 240,000 DHS employees (247,167 to be precise) including both current and former personnel. Reportedly, the DHS Office of the Inspector General (OIG) Case Management System was accessed and […]
Bogus security apps in the Google Play store stole users’ info and tracked their location
Android users would be wise to remember that just because an app appears in the official Google Play store doesn’t mean that it should be considered entirely trustworthy. Researchers at Trend Micro have described how they recently uncovered a total of 36 apps in the official Android app marketplace that […]
36 fake security apps removed from Google Play
Google has recently pulled 36 fake security apps from Google Play, after they’ve been flagged by Trend Micro researchers. Posing as legitimate security solutions, and occasionally misusing the name of well-known AV vendors like Avast, the apps seemed to be doing the job: they showed security notifications and other messages, […]
Failles Meltdown/Spectre : Intel prépare des mises à jour avec ses partenaires pour le 9 janvier
Atendue toute la journée, la réaction publique d’Intel aux failles de sécurité qui touche ses processeurs a enfin été publiée. Elle est courte et veut surtout tenter de faire comprendre que la société n’est pas la seule concernée… alors que les mises à jour se préparent pour le 9 janvier. Une […]
Security Flaws in GPS Trackers Puts Millions of Devices’ Data at Risk
Trackmadeddon attack puts millions of vulnerable GPS trackers at risk of data exposure. According to a research conducted by two security experts by Vangelis Stykas (@evstykas) and Michael Gruhn (@0x6d696368), a majority of location tracking devices are flawed and vulnerable to exploitation. There are versatile devices such as child or pet […]
Meltdown and Spectre CPU Flaws Affect Intel, ARM, AMD Processors
Unlike the initial reports suggested about Intel chips being vulnerable to some severe ‘memory leaking’ flaws, full technical details about the vulnerabilities have now been emerged, which revealed that almost every modern processor since 1995 is vulnerable to the issues. Disclosed today by Google Project Zero, the vulnerabilities potentially impact […]