Security News > 2021 > September

VMware warns of critical bug in default vCenter Server installs
2021-09-21 17:40

VMware warns customers to immediately patch a critical arbitrary file upload vulnerability in the Analytics service, impacting all appliances running default vCenter Server 6.7 and 7.0 deployments.vCenter Server is a server management solution that helps IT admins manage virtualized hosts and virtual machines in enterprise environments via a single console.

US sanctions cryptocurrency exchange used by ransomware gangs
2021-09-21 16:35

The US Treasury Department announced the first-ever sanctions against a cryptocurrency exchange, the Russian-linked Suex, for facilitating ransom transactions for ransomware gangs and helping them evade sanctions. By sanctioning crypto exchanges providing ransomware groups with material support, the US hopes to drain their funding and disrupt their operations.

Turla APT Plants Novel Backdoor In Wake of Afghan Unrest
2021-09-21 16:02

The Turla advanced persistent threat group is back with a new backdoor used to infect systems in Afghanistan, Germany and the U.S., researchers have reported. On Tuesday, Cisco Talos researchers said that they've spotted infections they attributed to the Turla group - a Russian-speaking APT. Those attacks are "Likely" using a stealthy, "Second-chance" backdoor to maintain access to infected devices, they noted.

Russian state hackers use new TinyTurla malware as secondary backdoor
2021-09-21 15:54

Russian state-sponsored hackers known as the Turla APT group have been using new malware over the past year that acted as a secondary persistence method on compromised systems in the U.S., Germany, and Afghanistan. Named TinyTurla due to its limited functionality and uncomplicated coding style, the backdoor could also be used as a stealthy second-stage malware dropper.

Atlassian Trello is down — second outage this week
2021-09-21 15:52

Trello is down for many users around the world, second time this week. Trello is a web-based TODO list-style platform owned by Atlassian, makers of Jira and Confluence.

Netgear fixes dangerous code execution bug in multiple routers
2021-09-21 15:24

Netgear has fixed a high severity remote code execution vulnerability found in the Circle parental control service, which runs with root permissions on almost a dozen modern Small Offices/Home Offices Netgear routers. While one would expect the attack vector exposed by Circle security flaw would be removed after the service is stopped, the Circle update daemon containing the bug is enabled by default and it can be exploited even if the service is disabled.

Google, Microsoft and Oracle amassed the most cybersecurity vulnerabilities in the first half of 2021
2021-09-21 14:48

A recent AtlasVPN report highlights the companies that have amassed the most security vulnerabilities through the first half of 2021. In the first six months of 2021, Google and Microsoft have "Accumulated the most vulnerabilities," according to Atlas VPN findings based on a recent Telefonica Tech report.

Managing change in AI: Don't forget about your staff's needs and abilities
2021-09-21 13:19

Consider re-skilling to meet the company's needs as well as the employees'. How many times have you heard a manager respond to employees about organizational change with the words, "It just made sense"? To workers who are adversely impacted by the change, it might not make sense at all.

#AI
U.S. companies excel at limiting shadow IT, according to a new report
2021-09-21 13:15

Due to the coronavirus pandemic, companies around the globe quickly transitioned to remote work to mitigate the spread of COVID-19 in-house. As a result, remote workers are logging on for the virtual workday on their home networks and at times even via their personal devices, leading to new security risks.

BlackMatter Strikes Iowa Farmers Cooperative, Demands $5.9M Ransom
2021-09-21 13:14

A ransomware group believed to be the latest incarnation of the infamous DarkSide cybergang is being blamed for taking out a farmers' cooperative online network, with extortionists demanding $5.9 million in ransom. The group BlackMatter is credited for the attack on an Iowa collective of farmers called NEW Cooperative.