PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Reverse RDP Attack Also Enables Guest-to-Host Escape in Microsoft Hyper-V

jeudi 8 août 2019 à 01:00
Remember the reverse RDP attack? Earlier this year, researchers disclosed clipboard hijacking and path-traversal issues in Microsoft's Windows built-in RDP client that could allow a malicious RDP server to compromise a client computer, reversely. (You can find details and a video demonstration for this security vulnerability, along with dozens of critical flaws in other third-party RDP

Binance KYC Data Leak — Crypto Exchange Sets $290,000 Bounty On Blackmailer

mercredi 7 août 2019 à 13:14
Malta-based cryptocurrency exchange Binance has become a victim of a ransom demand from a scammer who claimed to have hacked the KYC (Know Your Customer) data of thousands of its customers. The unknown attacker threatened the world's largest cryptocurrency exchange by volume to release KYC information of 10,000 users if the company did not pay 300 Bitcoins—that's equivalent to almost $3.5

KDE Linux Desktops Could Get Hacked Without Even Opening Malicious Files

mercredi 7 août 2019 à 09:26
If you are running a KDE desktop environment on your Linux operating system, you need to be extra careful and avoid downloading any ".desktop" or ".directory" file for a while. A cybersecurity researcher has disclosed an unpatched zero-day vulnerability in the KDE software framework that could allow maliciously crafted .desktop and .directory files to silently run arbitrary code on a user's

SWAPGS Attack — New Speculative Execution Flaw Affects All Modern Intel CPUs

mardi 6 août 2019 à 22:00
A new variant of the Spectre (Variant 1) side-channel vulnerability has been discovered that affects modern Intel CPUs which leverage speculative-execution, and some AMD processors as well, Microsoft and Red Hat warn. Identified as CVE-2019-1125, the vulnerability could allow unprivileged local attackers to access sensitive information stored in the operating system privileged kernel memory,

Pakistani Man Bribed AT&T Insiders to Plant Malware and Unlock 2 Million Phones

mardi 6 août 2019 à 20:01
United States federal government has charged a Pakistani national for bribing employees at AT&T telecommunication company over a period of five years to help unlock more than 2 million phones and plant malware on the company's network. Muhammad Fahd, a 34-year-old man from Pakistan, was arrested in Hong Kong last year in February at the request of the U.S. government and just extradited to the