SideWinder APT Targets Nepal, Afghanistan in Wide-Ranging Spy Campaign

Convincing email-credentials phishing, emailed backdoors and mobile apps are all part of the groups latest effort against military and government targets. Continue reading SideWinder APT Targets Nepal, Afghanistan in Wide-Ranging Spy Campaign

Critical, Unpatched Bugs Open GE Radiological Devices to Remote Code Execution

A CISA alert is flagging a critical default credentials issue that affects 100+ types of devices found in hospitals, from MRI machines to surgical imaging. Continue reading Critical, Unpatched Bugs Open GE Radiological Devices to Remote Code Execution

‘Free’ Cyberpunk 2077 Downloads Lead to Data Harvesting

The hotly anticipated game — featuring a digital Keanu Reeves as a major character — is being used as a lure for cyberattacks. Continue reading ‘Free’ Cyberpunk 2077 Downloads Lead to Data Harvesting

VMware Rolls a Fix for Formerly Critical Zero-Day Bug

VMware has issued a full patch and revised the severity level of the NSA-reported vulnerability to “important.” Continue reading VMware Rolls a Fix for Formerly Critical Zero-Day Bug

TrickBot Returns with a Vengeance, Sporting Rare Bootkit Functions

A new “TrickBoot” module scans for vulnerable firmware and has the ability to read, write and erase it on devices. Continue reading TrickBot Returns with a Vengeance, Sporting Rare Bootkit Functions