CVE-2021-22333
There is an Improper Validation of Array Index vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute, thus obtaining system permissions.
Credit: Dreamstime Malware attacks against cloud containers are nothing new, but these attacks have primarily focused on Linux deployments because they are the most common and where containers were born. Now, attackers are targeting Docker deployments on Windows, and researchers have found a new malware program designed to escape from Windows Server Containers and infect…
Endpoint Security , Internet of Things Security Researchers: Kalay Protocol Flaw Could Affect Millions of Connected Devices Scott Ferguson (Ferguson_Writes) • August 17, 2021 Example of how an attacker could exploit a vulnerability in ThroughTek’s Kalay protocol (Source: FireEye) FireEye researchers and the U.S. Cybersecurity and Infrastructure Security Agency are warning about a…
Cybercrime , Cybercrime as-a-service , Endpoint Detection & Response (EDR) Australian Politician Argues ‘Releasing the Hounds’ Necessary to Deter Attacks Jeremy Kirk (jeremy_kirk) • June 7, 2021 The Australian Parliament Building in Canberra A member of Australia’s Parliament is calling for the government’s spy agency to take offensive action against some of the…
A new Android Trojan codenamed FlyTrap has hit at least 140 countries since March 2021 and has spread to over 10,000 victims through social media hijacking, third-party app stores, and sideloaded applications. Zimperium’s zLabs mobile threat research teams recently found several previously undetected applications using Zimperium’s z9 malware engine and on-device detection. Following their forensic…
Business Continuity Management / Disaster Recovery , Fraud Management & Cybercrime , Governance & Risk Management Software Firm Helping Customers Affected by Ransomware to Recover Doug Olenick (DougOlenick) • July 22, 2021 Kaseya Executive Vice President Mike Sanders (Source: Kaseya) The software firm Kaseya said on Thursday it has obtained a universal key…
White House stands down SolarWinds, Microsoft Exchange cyber response groups | IT Security News GCN: News, Explainers, Insights 19. April 2021 The White House is suspending the two interagency groups tasked with managing the government’s response to the cybersecurity incidents involving SolarWinds and Microsoft Exchange, citing improving trends in patching. Like this: Like Loading… Related…