Security News > 2024

Ruijie Networks' Cloud Platform Flaws Could've Exposed 50,000 Devices to Remote Attacks
2024-12-25 13:45

Cybersecurity researchers have discovered several security flaws in the cloud management platform developed by Ruijie Networks that could permit an attacker to take control of the network...

Critical SQL Injection Vulnerability in Apache Traffic Control Rated 9.9 CVSS — Patch Now
2024-12-25 13:30

The Apache Software Foundation (ASF) has shipped security updates to address a critical security flaw in Traffic Control that, if successfully exploited, could allow an attacker to execute...

Former NSA cyberspy's not-so-secret hobby: Hacking Christmas lights
2024-12-25 13:27

Rob Joyce explains how it's done Video In 2018, Rob Joyce, then Donald Trump's White House Cybersecurity Coordinator, gave a surprise talk at the legendary hacking conference Shmoocon about his hobby.…

Iran's Charming Kitten Deploys BellaCPP: A New C++ Variant of BellaCiao Malware
2024-12-25 10:24

The Iranian nation-state hacking group known as Charming Kitten has been observed deploying a C++ variant of a known malware called BellaCiao. Russian cybersecurity company Kaspersky, which dubbed...

New botnet exploits vulnerabilities in NVRs, TP-Link routers
2024-12-24 20:04

A new Mirai-based malware campaign is actively exploiting unpatched vulnerabilities in Internet of Things (IoT) devices, including DigiEver DS-2105 Pro DVRs. [...]

European Space Agency's official store hacked to steal payment cards
2024-12-24 17:07

European Space Agency's official web shop was hacked as it started to load a piece of JavaScript code that generates a fake Stripe payment page at checkout. [...]

How Androxgh0st rose from Mozi's ashes to become 'most prevalent malware'
2024-12-24 16:02

Botnet's operators 'driven by similar interests as that of the Chinese state' After the Mozi botnet mysteriously disappeared last year, a new and seemingly more powerful botnet, Androxgh0st, rose...

FBI links North Korean hackers to $308 million crypto heist
2024-12-24 14:02

The North Korean hacker group 'TraderTraitor' stole $308 million worth of cryptocurrency in the attack on the Japanese exchange DMM Bitcoin in May. [...]

Researchers Uncover PyPI Packages Stealing Keystrokes and Hijacking Social Accounts
2024-12-24 13:22

Cybersecurity researchers have flagged two malicious packages that were uploaded to the Python Package Index (PyPI) repository and came fitted with capabilities to exfiltrate sensitive information...

Clop ransomware is now extorting 66 Cleo data-theft victims
2024-12-24 13:02

The Clop ransomware gang started to extort victims of its Cleo data theft attacks and announced on its dark web portal that 66 companies have 48 hours to respond to the demands. [...]