August 2024

Devices with insecure SSH services are everywhere, say infosec duo

Devices with insecure SSH services are everywhere, say infosec duo 2024-08-08 at 02:16 By Brandon Vigliarolo ‘Serendipitous’ discovery may have you second guessing your appliances Black Hat  A funny thing happened to security researchers at attack surface management company runZero when they were digging into the xz backdoor earlier this year: They found a whole […]

React to this headline:

Loading spinner

Devices with insecure SSH services are everywhere, say infosec duo Read More »

AMD’s latest desktop CPUs feature lower prices yet again as Intel readies a fightback

AMD’s latest desktop CPUs feature lower prices yet again as Intel readies a fightback 2024-08-08 at 01:16 By Matthew Connatser Brand-new Ryzen 9000 processors are about 10% cheaper than their Ryzen 7000 counterparts AMD’s next generation of desktop CPUs launch from tomorrow, and they’ll feature lower prices than the last series.… This article is an

React to this headline:

Loading spinner

AMD’s latest desktop CPUs feature lower prices yet again as Intel readies a fightback Read More »

Starliner latest: NASA outlines options to rescue Boeing pilots stuck on space station

Starliner latest: NASA outlines options to rescue Boeing pilots stuck on space station 2024-08-08 at 00:31 By Richard Speed Officials may turn to Elon’s SpaceX if Calamity Capsule proves too risky to return with crew NASA has shared more details on how it hopes to get Boeing’s stricken Starliner craft and its two test pilots

React to this headline:

Loading spinner

Starliner latest: NASA outlines options to rescue Boeing pilots stuck on space station Read More »

Under-fire Elon Musk urged to get a grip on X and reality – or resign

Under-fire Elon Musk urged to get a grip on X and reality – or resign 2024-08-07 at 23:31 By Thomas Claburn Chamber of Progress pens open letter pressing billionaire to behave better amid UK riots Exclusive  Echoing objections to social-media fueled violence from the government of the United Kingdom and others, the Chamber of Progress,

React to this headline:

Loading spinner

Under-fire Elon Musk urged to get a grip on X and reality – or resign Read More »

Over 40,000 Internet-Exposed ICS Devices Found in US: Censys

Over 40,000 Internet-Exposed ICS Devices Found in US: Censys 2024-08-07 at 22:16 By Eduard Kovacs Censys has found more than 40,000 internet-exposed ICS devices in the US, and notifying owners is in many cases impossible. The post Over 40,000 Internet-Exposed ICS Devices Found in US: Censys appeared first on SecurityWeek. This article is an excerpt

React to this headline:

Loading spinner

Over 40,000 Internet-Exposed ICS Devices Found in US: Censys Read More »

GhostWrite Vulnerability Facilitates Attacks on Devices With RISC-V CPU

GhostWrite Vulnerability Facilitates Attacks on Devices With RISC-V CPU 2024-08-07 at 22:16 By Eduard Kovacs Researchers disclose the details of GhostWrite, a RISC-V CPU vulnerability that can be exploited to gain full access to targeted devices. The post GhostWrite Vulnerability Facilitates Attacks on Devices With RISC-V CPU appeared first on SecurityWeek. This article is an

React to this headline:

Loading spinner

GhostWrite Vulnerability Facilitates Attacks on Devices With RISC-V CPU Read More »

Survey finds that four in five enterprise endpoints could run Windows 11

Survey finds that four in five enterprise endpoints could run Windows 11 2024-08-07 at 22:01 By Richard Speed Bad news: They aren’t, and Windows 10 end of support is looming There is some good news for Microsoft on the Windows 11 enterprise adoption front as a survey of more than 750,000 Windows endpoints indicates that

React to this headline:

Loading spinner

Survey finds that four in five enterprise endpoints could run Windows 11 Read More »

AWS ‘Bucket Monopoly’ attacks could allow complete account takeover

AWS ‘Bucket Monopoly’ attacks could allow complete account takeover 2024-08-07 at 21:16 By Jessica Lyons Vulnerable services fixed by the cloud biz but open source projects still at risk Critical flaws across at least six AWS cloud services could have allowed attackers to execute remote code, steal data or even takeover a user’s account without

React to this headline:

Loading spinner

AWS ‘Bucket Monopoly’ attacks could allow complete account takeover Read More »

Your Windows updates can all be reversed, says security researcher

Your Windows updates can all be reversed, says security researcher 2024-08-07 at 21:16 By Brandon Vigliarolo And you thought BlackLotus was a pain in the neck Black Hat  Security researchers from SafeBreach have found what they say is a Windows downgrade attack that’s invisible, persistent, irreversible and maybe even more dangerous than last year’s BlackLotus

React to this headline:

Loading spinner

Your Windows updates can all be reversed, says security researcher Read More »

Faulty instructions in Alibaba’s T-Head C910 RISC-V CPUs blow away all security

Faulty instructions in Alibaba’s T-Head C910 RISC-V CPUs blow away all security 2024-08-07 at 20:16 By Thomas Claburn Let’s get physical, physical … I don’t wanna hear your MMU talk Black Hat  Computer security researchers at the CISPA Helmholtz Center for Information Security in Germany have found serious security flaws in some of Alibaba subsidiary

React to this headline:

Loading spinner

Faulty instructions in Alibaba’s T-Head C910 RISC-V CPUs blow away all security Read More »

Tesla recalls over 1.6M electric cars in China for faulty hood lock

Tesla recalls over 1.6M electric cars in China for faulty hood lock 2024-08-07 at 19:31 By Matthew Connatser Across China and the US, more than 3.5 million cars have been recalled Tesla has issued a recall in China for four of its electric vehicle models, impacting more than 1.6 million cars.… This article is an

React to this headline:

Loading spinner

Tesla recalls over 1.6M electric cars in China for faulty hood lock Read More »

Low orbit satellites for phone service may cause more light pollution

Low orbit satellites for phone service may cause more light pollution 2024-08-07 at 18:31 By Dan Robinson Radiance much greater than current models, suggests paper Astronomers and other stargazers have new cause for concern about light pollution following claims that Starlink’s latest satellites which support phone services may appear five times brighter in the sky

React to this headline:

Loading spinner

Low orbit satellites for phone service may cause more light pollution Read More »

Researcher Sounds Alarm on Windows Update Flaws Allowing Undetectable Downgrade Attacks

Researcher Sounds Alarm on Windows Update Flaws Allowing Undetectable Downgrade Attacks 2024-08-07 at 18:16 By Ryan Naraine Researcher showcases hack against Microsoft Windows Update architecture, turning fixed vulnerabilities into zero-days. The post Researcher Sounds Alarm on Windows Update Flaws Allowing Undetectable Downgrade Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

React to this headline:

Loading spinner

Researcher Sounds Alarm on Windows Update Flaws Allowing Undetectable Downgrade Attacks Read More »

Implement MFA or Risk Non-Compliance With GDPR

Implement MFA or Risk Non-Compliance With GDPR 2024-08-07 at 18:16 By Kevin Townsend The UK Information Commissioner’s Office announced its intention to fine Advanced Computer Software Group £6.09 million. The post Implement MFA or Risk Non-Compliance With GDPR appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source React

React to this headline:

Loading spinner

Implement MFA or Risk Non-Compliance With GDPR Read More »

New Linux Kernel Exploit Technique ‘SLUBStick’ Discovered by Researchers

New Linux Kernel Exploit Technique ‘SLUBStick’ Discovered by Researchers 2024-08-07 at 18:01 By Cybersecurity researchers have shed light on a novel Linux kernel exploitation technique dubbed SLUBStick that could be exploited to elevate a limited heap vulnerability to an arbitrary memory read-and-write primitive. “Initially, it exploits a timing side-channel of the allocator to perform a

React to this headline:

Loading spinner

New Linux Kernel Exploit Technique ‘SLUBStick’ Discovered by Researchers Read More »

Roundcube Webmail Flaws Allow Hackers to Steal Emails and Passwords

Roundcube Webmail Flaws Allow Hackers to Steal Emails and Passwords 2024-08-07 at 18:01 By Cybersecurity researchers have disclosed details of security flaws in the Roundcube webmail software that could be exploited to execute malicious JavaScript in a victim’s web browser and steal sensitive information from their account under specific circumstances. “When a victim views a

React to this headline:

Loading spinner

Roundcube Webmail Flaws Allow Hackers to Steal Emails and Passwords Read More »

HPE’s $14B bid for Juniper waved through by UK regulator

HPE’s $14B bid for Juniper waved through by UK regulator 2024-08-07 at 17:46 By Paul Kunert Probe began in June and was over by August, no need for corporate lobbying (you hearing this Microsoft?) The UK’s competition watchdog – often a fly in the ointment of proposed global tech acquisitions – has approved Hewlett Packard

React to this headline:

Loading spinner

HPE’s $14B bid for Juniper waved through by UK regulator Read More »

Scroll to Top