CVE-2021-22333
There is an Improper Validation of Array Index vulnerability in Huawei Smartphone. Successful exploitation of this vulnerability may cause code to execute, thus obtaining system permissions.
Hackers behind one of the biggest ever digital coin heists have now returned nearly all of the US$610 million-plus they stole, Poly Network, the cryptocurrency platform targeted earlier this week by the attack, said on Thursday. The platform, which was little known before Tuesday’s heist, declared the hacker on Twitter as a “white hat,” referring…
New Delhi, July 25 (IANS) Microsoft has warned customers about a new crypto mining malware that can steal credentials, remove security controls, spread via emails and ultimately drop more tools for human-operated activity. Called ‘LemonDuck’, the crypto mining malware is targeting Windows and Linux systems, spreading via phishing emails, exploits, USB devices and brute force…
The largest pipeline operator in the United States has temporarily shut down all operations on its 5,500-mile pipeline following a cyberattack Friday. Colonial Pipeline said it proactively took some systems offline following the cyberattack to contain the threat. The move affected some of the company’s IT systems and resulted in the temporary stoppage of all…
Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime , Governance & Risk Management Agreement Comes in Advance of Biden Meeting With Putin on Wednesday Scott Ferguson (Ferguson_Writes) • June 15, 2021 President Joe Biden met with NATO Secretary General Jens Stoltenberg on Monday. (Photo: NATO via Flickr/CC) The U.S. and its NATO…
Credit: Dreamstime Malware attacks against cloud containers are nothing new, but these attacks have primarily focused on Linux deployments because they are the most common and where containers were born. Now, attackers are targeting Docker deployments on Windows, and researchers have found a new malware program designed to escape from Windows Server Containers and infect…
The Windows Subsystem for Linux (WSL) is a companion feature released by Microsoft in 2016 to run a Linux image in a near-native environment on Windows, allowing administrators to use Linux command-line tools without using a virtual machine. This was a novel implementation, although immediately doubts about security in this development began to arise. While…