Zephyrnet Logo

Tag: This Week in Security

This Week In Security: Forksquatting, RustDesk, And M&Ms

Github is struggling to keep up with a malware campaign that’s a new twist on typosquatting. The play is straightforward: Clone popular repositories, add...

Top News

This Week in Security: OpenSSL Fizzle, Java XML, and Nothing As It Seems

The security world held our collective breaths early this week for the big OpenSSL vulnerability announcement. Turns out it’s two separate issues, both related...

This Week in Security: npm Timing Leak, Siemens Universal Key, and PHP in PNG

First up is some clever wizardry from the research team, who discovered a timing attack that leaks information about private npm packages. The...

This Week in Security: PHP Attack Defused, Scoreboard Manipulation, and Tillitis

If you use PHP, you likely use the Composer tool for managing dependencies, at least indirectly. And the good folks at SonarSource found a...

This Week in Security: Malwarebytes Goes Nuts, Uber

I got a rude awakening Wednesday morning this week. HaD writers don’t necessarily keep normal hours — don’t judge. A local client called, complaining...

This Week in Security: 11,000 Gas Stations, TrustZone Hacks Kernel, and Unexpected Fuzzing Finds

Automated Tank Gauges (ATGs) are nifty bits of tech, sitting unseen in just about every gas station. They keep track of fuel levels, temperature,...

This Week in Security: Malicious Clipboards, Snakes on a Domain, and Binary Golf

There’s a bit of a panic regarding Chromium, Google Chrome, the system clipboard, and of all things, Google Doodles on the New Tab Page....

This Week in Security: In Mudge We Trust, Don’t Trust That App Browser, and Firefox at Pwn2Own

There’s yet another brouhaha forming over Twitter, but this time around it’s a security researcher making noise instead of an eccentric billionaire. worked...

This Week in Security: Secure Boot Bypass, Attack on Titan M, KASLR Weakness

It’s debatable just how useful Secure Boot is for end users, but now there’s yet another issue with Secure Boot, or more specifically, a...

This Week in Security: Breaches, ÆPIC, SQUIP, and Symbols

So you may have gotten a Slack password reset prompt. Something like half a percent of Slack’s userbase had their password hash potentially exposed...

This Week in Security: Symbiote Research and Detection, Routing Hijacks, Bruggling, and More

Last week we covered the Symbiote Rootkit, based on the excellent work by Blackberry, Intezer, and Cyber Geeks. This particular piece of malware takes...

This Week in Security: Symbiote, Smart Locks, and CosmicStrand

Symbiote is a particularly nasty Linux rootkit, and we have the interesting case of two separate analysis releasing this week. Up first is ...

This Week in Security: Asterisk, TikTok, Gitlab, And Finally a Spam Solution

There’s an ongoing campaign that’s compromising FreePBX systems around the world. It seems to be aimed specifically at Elastix systems, using CVE-2021-45461, a...

Latest Intelligence

spot_img
spot_img