Hacking

Pierluigi Paganini September 26, 2018
Hide and Seek (HNS) IoT Botnet targets Android devices with ADB option enabled

The latest samples of the HNS bot were designed to target Android devices having the wireless debugging feature ADB enabled. TheĀ Hide and SeekĀ (HNS) IoT botnet was first spotted early this year, since its discovery the authors continuously evolved its code. The IoT botnetĀ appeared in the threat landscape in January, whenĀ it was first discoveredĀ on January 10th […]

Pierluigi Paganini September 26, 2018
Former NSA TAO hacker sentenced to 66 months in prison over Kaspersky Leak

Former NSA TAO hacker was sentenced to 66 months in prison because he leakedĀ top-secret online documents related to theĀ US government banĀ on Kaspersky. A former member of the NSA’sĀ Tailored Access OperationsĀ hacking team was sentencedĀ to 66 months in prison because he leakedĀ top-secret online documents related to theĀ US government banĀ on Kaspersky software. The former NSA hacker is Nghia […]

Pierluigi Paganini September 26, 2018
oPatch community released micro patches for Microsoft JET Database Zero-Day

0patch community released an unofficial patch for the Microsoft JET Database Engine zero-day vulnerability disclosed by Trend Micro’s Zero Day Initiative Experts from 0patch, a community of experts that aims at addressing software flaws, released an unofficial patch for the Microsoft JET Database Engine zero-day vulnerability that Trend Micro’s Zero Day Initiative (ZDI) disclosed last […]

Pierluigi Paganini September 25, 2018
Bitcoin Core Team fixes a critical DDoS flaw in wallet software

Bitcoin Core Software fixed a critical DDoS attack vulnerability in the Bitcoin Core wallet software tracked as CVE-2018-17144. The Bitcoin Core team urges miners to update client software with the latest Bitcoin Core 0.16.3 version as soon as possible. “A denial-of-service vulnerability (CVE-2018-17144) exploitable by miners has been discovered in Bitcoin Core versions 0.14.0 up […]

Pierluigi Paganini September 25, 2018
SHEINĀ Data breach affected 6.42 million users

Another fashion retailer suffered a data breach, the victim is SHEIN that announces the security breach affected 6.42 million customers. The retailer hired a forensic cybersecurity firm as well as an international law firm to investigate the security breach. SHEIN is now notifying affected users and it is urging them to change the password for […]

Pierluigi Paganini September 25, 2018
White hat hacker found a macOS Mojave privacy bypass 0-day flaw on release day

The popular macOS expert and former NSA hacker has discovered a zero-day vulnerability in macOS on Mojave ‘s release day. It is always Patrick Wardle, this time the popular expert and former NSA hacker has found a zero-day flaw in macOS on Mojave ‘s release day. According to the expert, the implementation bug can be […]

Pierluigi Paganini September 25, 2018
Akamai Report: Credential stuffing attacks are a growing threat

According to Akamai’s latestĀ State of the InternetĀ report on credential stuffing, credential stuffing continues to be growing threat. According to Akamai report titled “[state of the internet] / security CREDENTIAL STUFFING ATTACKS“Ā  theĀ credential stuffing attacks are a growing threat and often underestimated. Credential stuffing attacks involve botnets to try stolen login credentials usually obtained through phishing […]

Pierluigi Paganini September 24, 2018
Critical flaw affects Cisco Video Surveillance Manager

Cisco has patched a critical vulnerability in the Cisco Video Surveillance Manager (VSM) could be exploited by an unauthenticated remote attacker to gain root access. Cisco has fixed a critical vulnerability in the Cisco Video Surveillance Manager software running on some Connected Safety and Security Unified Computing System (UCS) platforms. The flaw couldĀ give an unauthenticated, […]

Pierluigi Paganini September 24, 2018
Firefox DoS issue crashes the browser and sometimes the Windows OS

A security researcher discovered a bug affecting Firefox on Mac, Linux, and Windows that could crash the browser and in some cases the underlying OS. TheĀ security researcherĀ Sabri HaddoucheĀ fromĀ Wire discovered a bug that affects Firefox on Mac, Linux, and Windows that could crash the browser and in some cases the underlying PC. Haddouche was focusing its […]

Pierluigi Paganini September 24, 2018
A bug in Twitter Account Activity API exposed users messages to wrong developers

An issue in Twitter Account Activity APIĀ has exposed some users’ direct messages (DMs) and protected tweets to wrong developers. A bug in Twitter Account Activity APIĀ has exposed some users’ direct messages (DMs) and protected tweets to unauthorized third-party app developers. “We recently published aĀ noticeĀ about a bug related to our Account Activity API that could have […]