Security News

Malware Targets NAS Devices Via SambaCry Exploit (Security Week)
2017-07-18 16:24

A piece of malware dubbed by researchers SHELLBIND leverages a recently patched Samba vulnerability in attacks aimed at Internet of Things (IoT) devices, particularly network-attached storage...

EternalSynergy-Based Exploit Targets Recent Windows Versions (Security Week)
2017-07-18 16:18

A security researcher has devised an EternalSynergy-based exploit that can compromise versions of Windows newer than Windows 8. read more

751 domains hijacked to redirect visitors to exploit kit (Help Net Security)
2017-07-14 16:44

An unknown attacker has managed to modify the name servers assigned to 751 domains, which resulted in some visitors to the hijacked domains being redirected to a site hosting the Rig Exploit Kit...

Samba puts out new security update to address exploit that fueled WannaCry (ArsTechnica)
2017-07-13 16:08

Vuln hit "all versions of Samba from 4.0.0 onward using embedded Heimdal Kerberos."

Local Root Exploit Found on Lenovo Smartphone (Security Week)
2017-07-03 15:10

The Lenovo VIBE smartphone was found to include vulnerabilities that could allow an attacker with physical access to the device to gain root privileges. read more

No evidence NotPetya developers obtained NSA exploits weeks before their public leak (ArsTechnica)
2017-06-30 14:13

Evidence ties people behind massive malware attack to mysterious Shadow Brokers group.

CIA Exploits Against Wireless Routers (Schneier on Security)
2017-06-28 10:35

WikiLeaks has published CherryBlossom, the CIA's program to hack into wireless routers. The program is about a decade old. Four good news articles. Five. And a list of vulnerable routers....

Ohio Gov. Kasich’s website, dozens of others defaced using year-old exploit (ArsTechnica)
2017-06-27 19:05

"High risk" exploit patch was issued in May of 2016.

Botnets Can Exploit More Vulnerabilities in DVRs (Security Week)
2017-06-20 13:05

Newly discovered vulnerabilities affecting DVR systems could open the door to new, more potent Internet of Things (IoT) botnets, Pen Test Partners security researchers warn. read more