Security News

ESET researchers analyze first UEFI bootkit for Linux systems
2024-11-27 16:10

ESET Research has discovered the first UEFI bootkit designed for Linux systems, named Bootkitty by its creators. Researchers believe this bootkit is likely an initial proof of concept, and based...

Researchers Discover "Bootkitty" – First UEFI Bootkit Targeting Linux Kernels
2024-11-27 16:05

Cybersecurity researchers have shed light on what has been described as the first Unified Extensible Firmware Interface (UEFI) bootkit designed for Linux systems. Dubbed Bootkitty by its creators...

Researchers reveal exploitable flaws in corporate VPN clients
2024-11-26 15:33

Researchers have discovered vulnerabilities in the update process of Palo Alto Networks (CVE-2024-5921) and SonicWall (CVE-2024-29014) corporate VPN clients that could be exploited to remotely...

Researchers Uncover Malware Using BYOVD to Bypass Antivirus Protections
2024-11-25 09:16

Cybersecurity researchers have uncovered a new malicious campaign that leverages a technique called Bring Your Own Vulnerable Driver (BYOVD) to disarm security protections and ultimately gain...

Researchers unearth two previously unknown Linux backdoors
2024-11-21 09:59

ESET researchers have identified multiple samples of two previously unknown Linux backdoors: WolfsBane and FireWood. The goal of the backdoors and tools discovered is cyberespionage that targets...

GitHub projects targeted with malicious commits to frame researcher
2024-11-16 15:30

GitHub projects have been targeted with malicious commits and pull requests, in an attempt to inject backdoors into these projects. Most recently, the GitHub repository of Exo Labs, an AI and...

Researchers Warn of Privilege Escalation Risks in Google's Vertex AI ML Platform
2024-11-15 12:35

Cybersecurity researchers have disclosed two security flaws in Google's Vertex machine learning (ML) platform that, if successfully exploited, could allow malicious actors to escalate privileges...

Germany drafts law to protect researchers who find security flaws
2024-11-06 15:17

The Federal Ministry of Justice in Germany has drafted a law to provide legal protection to security researchers who discover and responsibly report security vulnerabilities to vendors. [...]

Hiring guide: Key skills for cybersecurity researchers
2024-11-04 05:30

In this Help Net Security interview, Rachel Barouch, an Organizational Coach for VCs and startups and a former VP HR in both a VC and a Cybersecurity startup, discusses the dynamics of...

Researchers Uncover Python Package Targeting Crypto Wallets with Malicious Code
2024-10-30 11:00

Cybersecurity researchers have discovered a new malicious Python package that masquerades as a cryptocurrency trading tool but harbors functionality designed to steal sensitive data and drain...