Skip to main content

Security News

Filter by:

Cloudflare says it stopped the largest DDoS attack ever reported

Cloudflare's system detected and mitigated a 17.2 million request-per-second DDoS attack, which they said is three times larger than any previous one.
ZDnet 28 Aug 2021 848 Views

Ragnarok ransomware releases master decryptor after shutdown

Ragnarok ransomware gang appears to have called it quits and released the master key that can decrypt files locked with their malware.
Bleeping Computer 27 Aug 2021 643 Views

Synology: Multiple products impacted by OpenSSL RCE vulnerability

Taiwan-based NAS maker Synology has revealed that recently disclosed remote code execution (RCE) and denial-of-service (DoS) OpenSSL vulnerabilities impact some of its products.
Bleeping Computer 27 Aug 2021 832 Views

Mirai-style IoT botnet is now scanning for router-pwning critical vuln in Realtek kit

Researchers warn of Dark.IoT's rapidly evolving nasty A denial-of-service vulnerability affecting SDKs for Realtek chipsets used in 65 vendors' IoT devices has been incorporated into a son-of-Mirai botnet, according to new research.…
The Register 26 Aug 2021 10441 Views

ProxyLogon flaw, evil emails, SQL injections used to open backdoors on Windows boxes

Multi-use toolkit deployed on victims' networks across Asia, North America ESET and TrendMicro have identified a novel and sophisticated backdoor tool that miscreants have slipped onto compromised Windows computers in companies mostly in Asia but also in North America.…
The Register 26 Aug 2021 10461 Views

Win10 Admin Rights Tossed Off by Yet Another Plug-In

Then again, you don’t even need the actual device – in this case, a SteelSeries peripheral – since emulation works just fine to launch with full SYSTEM rights.
Threatpost 26 Aug 2021 584 Views

Microsoft Spills 38 Million Sensitive Data Records Via Careless Power App Configs

Data leaked includes COVID-19 vaccination records, social security numbers and email addresses tied to American Airlines, Ford, Indiana Department of Health and New York City public schools.
Threatpost 24 Aug 2021 513 Views

ProxyShell Attacks Pummel Unpatched Exchange Servers

CISA is warning about a surge of ProxyShell attacks, as Huntress discovered 140 webshells launched against 1,900 unpatched Microsoft Exchange servers.
Threatpost 24 Aug 2021 681 Views

Windows 10 Admin Rights Gobbled by Razer Devices

So much for Windows 10's security: A zero-day in the device installer software grants admin rights just by plugging in a mouse or other compatible device. UPDATE: Microsoft is investigating.
Threatpost 23 Aug 2021 570 Views

How Ready Are You for a Ransomware Attack?

Oliver Tavakoli, CTO at Vectra, lays out the different layers of ransomware defense all companies should implement.
Threatpost 20 Aug 2021 760 Views