PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

US and Global Allies Accuse China of Massive Microsoft Exchange Attack

mardi 20 juillet 2021 à 08:52
The U.S. government and its key allies, including the European Union, the U.K., and NATO, formally attributed the massive cyberattack against Microsoft Exchange email servers to state-sponsored hacking crews working affiliated with the People's Republic of China's Ministry of State Security (MSS). In a statement issued by the White House on Monday, the administration said, "with a high degree of

Researchers Warn of Linux Cryptojacking Attackers Operating from Romania

lundi 19 juillet 2021 à 15:11
A threat group likely based in Romania and active since at least 2020 has been behind an active cryptojacking campaign targeting Linux-based machines with a previously undocumented SSH brute-forcer written in Golang. Dubbed "Diicot brute," the password cracking tool is alleged to be distributed via a software-as-a-service model, with each threat actor furnishing their own unique API keys to

Turns Out That Low-Risk iOS Wi-Fi Naming Bug Can Hack iPhones Remotely

lundi 19 juillet 2021 à 12:38
The Wi-Fi network name bug that was found to completely disable an iPhone's networking functionality had remote code execution capabilities and was silently fixed by Apple earlier this year, according to new research. The denial-of-service vulnerability, which came to light last month, stemmed from the way iOS handled string formats associated with the SSID input, triggering a crash on any

Five Critical Password Security Rules Your Employees Are Ignoring

lundi 19 juillet 2021 à 12:07
According to Keeper Security's Workplace Password Malpractice Report, many remote workers aren't following best practices for password security. Password security was a problem even before the advent of widespread remote work. So, what happened post-pandemic? Keeper Security's Workplace Password Malpractice Report sought to find out. In February 2021, Keeper surveyed 1,000 employees in the U.S.

Researcher Uncovers Yet Another Unpatched Windows Printer Spooler Vulnerability

lundi 19 juillet 2021 à 08:51
Merely days after Microsoft sounded the alarm on an unpatched security vulnerability in the Windows Print Spooler service, possibly yet another zero-day flaw in the same component has come to light, making it the fourth printer-related shortcoming to be discovered in recent weeks. "Microsoft Windows allows for non-admin users to be able to install printer drivers via Point and Print," CERT