Hacking

Pierluigi Paganini July 11, 2019
Intel addresses high severity flaw in Processor Diagnostic Tool

Intel Patch Tuesday updates for July 2019 address a serious flaw in Processor Diagnostic Tool and minor issue in the Solid State Drives (SSD) for Data Centers (DC). Intel’s Patch Tuesday security updates for July 2019 address a serious flaw in the Processor Diagnostic Tool and another issue in the Solid State Drives (SSD) for […]

Pierluigi Paganini July 11, 2019
A new NAS Ransomware targets QNAP Devices

Malware researchers at two security firms Intezer and Anomali have discovered a new piece of ransomware targeting Network Attached Storage (NAS) devices. Experts at security firms Intezer and Anomali have separately discovered a new piece of ransomware targeting Network Attached Storage (NAS) devices. NAS servers are a privileged target for hackers because they normally store […]

Pierluigi Paganini July 10, 2019
Kali Linux is now available for Raspberry Pi 4

The popular operating system Kali Linux is finally available for Raspberry Pi 4, this is great news for hackers and passionate. Offensive Security has announced the availability of the popular operating system Kali Linux for Raspberry Pi 4, this is great news for hackers and security experts. Raspberry Pi 4 is a single-board computer developed in the United […]

Pierluigi Paganini July 10, 2019
Severe vulnerabilities allow hacking older GE anesthesia machines

The news is disconcerting, security experts have found vulnerabilities in two models of anesthesia machines commercialized by General Electric. General Electric is recommending not connecting two models of its anesthesia machines (GE Aestiva and GE Aespire, models 7100 and 7900) to hospital networks after researchers have discovered security flaws in the devices. The experts at the healthcare […]

Pierluigi Paganini July 09, 2019
Prototype Pollution flaw discovered in all versions of Lodash Library

Liran Tal, a developer advocate at open-source security platform Snyk, discovered a high-severity prototype pollution security flaw that affects all versions of lodash. Lodash is a JavaScript library which provides utility functions for common programming tasks using the functional programming paradigm. Liran Tal, a developer advocate at Snyk, discovered a high-severity prototype pollution vulnerability, tracked as CVE-2019-10744, that affects all […]

Pierluigi Paganini July 09, 2019
Flaw in Zoom video conferencing software lets sites take over webcam on Mac

Zoom video conferencing software for Mac is affected by a flaw that could allow attackers to take over webcams when users visit a website. Cybersecurity expert Jonathan Leitschuh disclosed an unpatched critical security vulnerability in the Zoom app for Apple Mac computers, that is chained with another issue, could be exploited by attackers to execute […]

Pierluigi Paganini July 09, 2019
Kaspersky report: Malware shared by USCYBERCOM first seen in December 2016

The malware samples shared by USCYBERCOM last week were first detected in December 2016 in attacks attributed to Iran-linked APT33. Last week the United States Cyber Command (USCYBERCOM) uploaded to VirusTotal a malware used by Iran-linked APT33 group in attacks in Dec 2016 and Jan 2017. Now experts at Kaspersky confirmed that the malware was […]

Pierluigi Paganini July 09, 2019
A new Astaroth Trojan Campaign uncovered by Microsoft

Microsoft Defender ATP Research Team discovered a fileless malware campaign that was spreading the information stealing Astaroth Trojan. Experts at the Microsoft Defender ATP Research Team discovered a fileless malware campaign that is delivering the information stealing Astaroth Trojan. The malware is able to log the users’ keystrokes, collect information through hooking, access clipboard content, and monitor […]

Pierluigi Paganini July 08, 2019
Backdoor mechanism found in Ruby strong_password library

The developer Tute Costa found a backdoor in the Ruby library during regular security audits before deploying his code in the production environment. The developer Tute Costa found a backdoor in the Ruby library during regular security audits. The dangerous code was used to check the password strength of user-chosen passwords when the library was being […]

Pierluigi Paganini July 08, 2019
UK ICO fines British Airways ÂŁ183 Million under GDPR over 2018 security breach

The UK Information Commissioner’s Office (ICO) fined British Airways with ÂŁ183 million for failing to protect its customers’ data during last year’s security breach. The UK Information Commissioner’s Office (ICO) fined British Airways with ÂŁ183 million for failing to protect the personal information of roughly 500,000 customers during 2018 security breach. “Following an extensive investigation the ICO […]