Security News

Critical hole in Atlassian Bitbucket allows any miscreant to hijack servers
2022-08-29 18:08

A critical command-injection vulnerability in multiple API endpoints of Atlassian Bitbucket Server and Data Center could allow an unauthorized attacker to remotely execute malware, and view, change, and even delete data stored in repositories. As Atlassian explains in its security advisory, published mid-last week: "An attacker with access to a public repository or with read permissions to a private Bitbucket repository can execute arbitrary code by sending a malicious HTTP request."

Patch critical flaw in Atlassian Bitbucket Server and Data Center! (CVE-2022-36804)
2022-08-29 11:03

A critical vulnerability in Atlassian Bitbucket Server and Data Center could be exploited by unauthorized attackers to execute malicious code on vulnerable instances. Bitbucket Server and Data Center are used by software developers around the world for source code revision control, management and hosting.

Critical Vulnerability Discovered in Atlassian Bitbucket Server and Data Center
2022-08-26 19:39

Atlassian has rolled out fixes for a critical security flaw in Bitbucket Server and Data Center that could lead to the execution of malicious code on vulnerable installations.Tracked as CVE-2022-36804, the issue has been characterized as a command injection vulnerability in multiple endpoints that could be exploited via specially crafted HTTP requests.

Atlassian Bitbucket Server vulnerable to critical RCE vulnerability
2022-08-26 16:40

Atlassian has published a security advisory warning Bitbucket Server and Data Center users of a critical security flaw that attackers could leverage to execute arbitrary code on vulnerable instances. "An attacker with access to a public repository or with read permissions to a private Bitbucket repository can execute arbitrary code by sending a malicious HTTP request," explains Atlassian's advisory.

Crypto Miners Using Tox P2P Messenger as Command and Control Server
2022-08-24 17:59

Threat actors have begun to use the Tox peer-to-peer instant messaging service as a command-and-control method, marking a shift from its earlier role as a contact method for ransomware negotiations. The findings from Uptycs, which analyzed an Executable and Linkable Format artifact that functions as a bot and can run scripts on the compromised host using the Tox protocol.

How to deploy the Bitwarden self-hosted server with Docker
2022-08-17 13:55

One of the many reasons why this is so is because of the tool's flexibility, and a perfect illustration of that is the ability to deploy your very own Bitwarden server using Docker. Why would you want to deploy your own Bitwarden server? You might have incredibly sensitive information that you only entrust to your internal teams.

Malicious PyPi packages aim DDoS attacks at Counter-Strike servers
2022-08-15 22:03

A dozen malicious Python packages were uploaded to the PyPi repository this weekend in a typosquatting attack that performs DDoS attacks on a Counter-Strike 1.6 server. Python Package Index is a repository of open-source software packages that developers can easily incorporate into their Python projects to build complex apps with minimal effort.

Over 9,000 VNC servers exposed online without a password
2022-08-14 14:12

Researchers have discovered at least 9,000 exposed VNC endpoints that can be accessed and used without authentication, allowing threat actors easy access to internal networks. Security weakness hunters at Cyble scanned the web for internet-facing VNC instances with no password and found over 9,000 accessible servers.

Emergency services call-handling provider: Ransomware forced it to pull servers offline
2022-08-12 13:06

Advanced, the MSP forced to shut down some of its servers last week after identifying an "Issue" with its infrastructure hosting products, has confirmed a ransomware attack and says recovery will be in the order of weeks. Some 36 customers from the UK's National Health Service use services provided by Advanced, including NHS 111, which provides round-the-clock support such as health information.

Zimbra auth bypass bug exploited to breach over 1,000 servers
2022-08-11 19:32

An authentication bypass Zimbra security vulnerability is actively exploited to compromise Zimbra Collaboration Suite email servers worldwide. Zimbra is an email and collaboration platform used by more than 200,000 businesses from over 140 countries, including over 1,000 government and financial organizations.