Covert Data Channel in TLS Dodges Network Perimeter Protection

Researchers have found a new covert data exchange technique that abuses the TLS protocol that can circumvent traditional network perimeter protections. Continue reading Covert Data Channel in TLS Dodges Network Perimeter Protection

New Western Digital My Cloud Bugs Give Local Attackers Root on NAS Devices

Two new WD My Cloud vulnerabilities have been identified, adding to last month’s bevy of security bugs. Continue reading New Western Digital My Cloud Bugs Give Local Attackers Root on NAS Devices

Massive Smominru Cryptocurrency Botnet Rakes In Millions

Researchers say Smominru threat actors are in control of 500,000 node botnet and earning $8,500 daily mining for Monero cryptocurrency. Continue reading Massive Smominru Cryptocurrency Botnet Rakes In Millions

Multiple Critical Flaws Found in Zoho’s ManageEngine

Researchers have discovered critical vulnerabilities in Zoho’s ManageEnging suite that can lead to data loss and possible remote code execution. Continue reading Multiple Critical Flaws Found in Zoho’s ManageEngine

Cisco Patches Critical VPN Vulnerability

Cisco Systems released a patch Monday to fix a critical security vulnerability, with a CVSS rating of 10, in its Secure Sockets Layer VPN solution called Adaptive Security Appliance. Continue reading Cisco Patches Critical VPN Vulnerability

Ploutus.D Malware Variant Used in U.S.-based ATM Jackpotting Attacks

ATM maker NCR Corp. is warning that cyber criminals are hacking U.S. cash machines with malware that can drain machines dry of cash. Continue reading Ploutus.D Malware Variant Used in U.S.-based ATM Jackpotting Attacks