Security News

Vulnerabilities Found in Aviatrix Enterprise VPN
2019-12-06 16:58

Two local privilege escalation vulnerabilities have been identified by a researcher in an enterprise VPN product from cloud-native networking solutions provider Aviatrix. Aviatrix claims to have...

Linux Bug Opens Most VPNs to Hijacking
2019-12-06 16:54

In a coffee-shop scenario, attackers can hijack "secure" VPN sessions of those working remotely, injecting data into their TCP streams.

Tricky VPN-busting bug lurks in iOS, Android, Linux distros, macOS, FreeBSD, OpenBSD, say university eggheads
2019-12-06 05:01

OpenVPN, WireGuard, IKEv2/IPSec also vulnerable to unmasking flaw, we're told A bug in the way Unix-flavored systems handle TCP connections could put VPN users at risk of having their encrypted...

New Linux Bug Lets Attackers Hijack Encrypted VPN Connections
2019-12-06 03:02

A team of cybersecurity researchers has disclosed a new severe vulnerability affecting most Linux and Unix-like operating systems, including FreeBSD, OpenBSD, macOS, iOS, and Android, that could...

VPN Connection Hijacking Vulnerability Affects Linux, Unix Systems
2019-12-05 19:27

A vulnerability that can be exploited to determine if a user is connected to a VPN and hijack active TCP connections in a VPN tunnel has been found to affect various Linux and Unix operating...

Don't trust the Trusted Platform Module – it may leak your VPN server's private key (depending on your configuration)
2019-11-12 19:43

You know what they say: Timing is... everything Trusted Platform Modules, specialized processors or firmware that protect the cryptographic keys used to secure operating systems, are not entirely...

S2 Ep15: City under attack! VPN hacked, floppies nixed
2019-11-01 15:49

A latest episode of the Naked Security podcast is out now!

Avast: Stolen VPN Credentials Led to CCleaner Attack Redux
2019-10-23 12:48

Avast Says CCleaner Versions Are Malware-FreeAvast's CCleaner utility is popular - with attackers. For the second time in two years, the company says it believes CCleaner was the intended targeted...

Avast lobs intruders into the 'Abiss': Miscreants tried to tamper with CCleaner after sneaking into network via VPN
2019-10-21 18:54

Poorly secured opening in security blamed On Monday, security biz Avast said it believes some of its credentials were stolen and abused in an unsuccessful attempt to subvert CCleaner, a file...

American intelligence follows British lead in warning of serious VPN vulnerabilities
2019-10-10 06:01

Now if only they'd accept the Queen back again... The US National Security Agency (NSA) is warning admins to patch a set of months-old security bugs that have recently come under active attack.…