Security News

Dear sysadmins: Patch Webmin now – zero-day exploit emerges for potential hijack hole in server control panel
2019-08-19 20:28

Flawed code traced to home build system, vulnerability can be attacked in certain configs The maintainers of Webmin – an open-source application for system administration tasks on Unix-flavored...

HTTP/2 Implementation Vulnerabilities Expose Servers to DoS Attacks
2019-08-14 11:48

Researchers at Netflix and Google have discovered a total of eight denial-of-service (DoS) vulnerabilities affecting various HTTP/2 implementations, including from major tech companies such as...

HTTP/2, Brute! Then fall, server. Admin! Ops! The server is dead
2019-08-14 09:02

Beware the denials of service: Netflix warns of eight networking bugs On Tuesday, Netflix, working in conjunction with Google and CERT/CC, published a security advisory covering a series of...

Don’t let the crooks ‘borrow’ your home router as a hacking server
2019-08-07 14:18

Crooks don't have to break *into* your network to benefit - they can bounce *off* it so you take the blame and look like a hacker yourself.

How the Air Force used a bug bounty program to hack its own cloud server
2019-08-07 14:14

The Air Force paid out $123,000 to researchers who found vulnerabilities in the organization's move to the cloud. Here's why.

Capital One's Breach May Be a Server Side Request Forgery
2019-08-05 12:48

SSRF Appears to Fit Scenario, But Details Are SlimCapital One's enormous data breach is a subject of intense scrutiny as well as fear. A definitive post mortem is likely months away. But security...

FireEye’s new software releases allow for detection and investigation of attacks against servers
2019-08-05 02:00

FireEye, the intelligence-led security company, announced the availability of two new software releases – FireEye Network Security 8.3 and FireEye Endpoint Security 4.8. These new versions allow...

New Mirai Variant Hides C&C Server on Tor Network
2019-08-02 16:34

A recently discovered variant of the Mirai Internet of Things (IoT) malware is using a command and control (C&C) server on the Tor network, Trend Micro’s security researchers have discovered.  read more

EvilGnome – Linux malware aimed at your laptop, not your servers
2019-07-25 14:59

EvilGnome was written to target the comparatively small but committed community who use Linux on their laptops.

Linux Botnet Adding BlueKeep-Flawed Windows RDP Servers to Its Target List
2019-07-25 09:48

Cybersecurity researchers have discovered a new variant of WatchBog, a Linux-based cryptocurrency mining malware botnet, which now also includes a module to scan the Internet for Windows RDP...