PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

SonicWall Issues Patches for a New Critical Flaw in SMA 100 Series Devices

samedi 25 septembre 2021 à 07:39
Network security company SonicWall has addressed a critical security vulnerability affecting its Secure Mobile Access (SMA) 100 series appliances that can permit remote, unauthenticated attackers to gain administrator access on targeted devices remotely. Tracked as CVE-2021-20034, the arbitrary file deletion flaw is rated 9.1 out of a maximum of 10 on the CVSS scoring system, and could allow an

A New APT Hacker Group Spying On Hotels and Governments Worldwide

samedi 25 septembre 2021 à 07:13
A new advanced persistent threat (APT) has been behind a string of attacks against hotels across the world, along with governments, international organizations, engineering companies, and law firms. Slovak cybersecurity firm ESET codenamed the cyber espionage group FamousSparrow, which it said has been active since at least August 2019, with victims located across Africa, Asia, Europe, the

Apple's New iCloud Private Relay Service Leaks Users' Real IP Addresses

vendredi 24 septembre 2021 à 15:15
A new as-yet unpatched weakness in Apple's iCloud Private Relay feature could be circumvented to leak users' true IP addresses from iOS devices running the latest version of the operating system. Introduced with iOS 15, which was officially released this week, iCloud Private Relay aims to improve anonymity on the web by employing a dual-hop architecture that effectively shields users' IP address

Google Warns of a New Way Hackers Can Make Malware Undetectable on Windows

vendredi 24 septembre 2021 à 14:49
Cybersecurity researchers have disclosed a novel technique adopted by threat actors to deliberately evade detection with the help of malformed digital signatures of its malware payloads. "Attackers created malformed code signatures that are treated as valid by Windows but are not able to be decoded or checked by OpenSSL code — which is used in a number of security scanning products," Google

Cisco Releases Patches 3 New Critical Flaws Affecting IOS XE Software

vendredi 24 septembre 2021 à 09:26
Networking equipment maker Cisco Systems has rolled out patches to address three critical security vulnerabilities in its IOS XE network operating system that remote attackers could potentially abuse to execute arbitrary code with administrative privileges and trigger a denial-of-service (DoS) condition on vulnerable devices. The list of three flaws is as follows - CVE-2021-34770 (CVSS score: