PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

3 New Severe Security Vulnerabilities Found In SolarWinds Software

mercredi 3 février 2021 à 12:31
Cybersecurity researchers on Wednesday disclosed three severe security vulnerabilities impacting SolarWinds products, the most severe of which could have been exploited to achieve remote code execution with elevated privileges. Two of the flaws (CVE-2021-25274 and CVE-2021-25275) were identified in the SolarWinds Orion Platform, while a third separate weakness (CVE-2021-25276) was found in the

Guide: How Security Consolidation Helps Small Cybersecurity Teams

mercredi 3 février 2021 à 12:06
The dynamic nature of cybersecurity, the changes in the threat landscape, and the expansion of the attack surface lead organizations to add more security solutions—from different vendors—creating a layered security infrastructure that introduces new challenges to any team, with a much more significant impact on small ones. And yet, sophisticated attacks continue to bypass these advanced security

A New Linux Malware Targeting High-Performance Computing Clusters

mercredi 3 février 2021 à 11:43
High-performance computing clusters belonging to university networks as well as servers associated with government agencies, endpoint security vendors, and internet service providers have been targeted by a newly discovered backdoor that gives attackers the ability to execute arbitrary commands on the systems remotely. Cybersecurity firm ESET named the malware "Kobalos" — a nod to a "mischievous

Agent Tesla Malware Spotted Using New Delivery & Evasion Techniques

mardi 2 février 2021 à 15:00
Security researchers on Tuesday uncovered new delivery and evasion techniques adopted by Agent Tesla remote access trojan (RAT) to get around defense barriers and monitor its victims. Typically spread through social engineering lures, the Windows spyware not only now targets Microsoft's Antimalware Scan Interface (AMSI) in an attempt to defeat endpoint protection software, it also employs a

Data Breach Exposes 1.6 Million Jobless Claims Filed in the Washington State

mardi 2 février 2021 à 11:28
The Office of the Washington State Auditor (SAO) on Monday said it's investigating a security incident that resulted in the compromise of personal information of more than 1.6 million people who filed for unemployment claims in the state in 2020. The SAO blamed the breach on a software vulnerability in Accellion's File Transfer Appliance (FTA) service, which allows organizations to share