Traffic manipulation and cryptocurrency mining campaign compromised 40,000+ machines

Unknown attackers have compromised 40,000+ servers, networking and IoT devices around the world and are using them to mine Monero and redirect traffic to websites hosting tech support scams, malicious browser extensions, and so on. The campaign, dubbed… Continue reading Traffic manipulation and cryptocurrency mining campaign compromised 40,000+ machines

Over 115,000 Drupal Sites Still Vulnerable to Drupalgeddon2 Exploit

Hundreds of thousands of websites running on the Drupal CMS—including those of major educational institutions and government organizations around the world—have been found vulnerable to a highly critical flaw for which security patches were released al… Continue reading Over 115,000 Drupal Sites Still Vulnerable to Drupalgeddon2 Exploit

A look into the Drupalgeddon client-side attacks

Back-to-back Drupal zero-day vulnerabilities are being monetized with malicious web cryptominers.
Categories:

Cryptomining
Threat analysis

Tags: CMScontent management systemsdrupaldrupalgeddonmalicious cryptomining

(Read more…)

The p… Continue reading A look into the Drupalgeddon client-side attacks

Drupal, Twitter, iLo Ransomware, and Cambridge Analytica – Paul’s Security Weekly #558

Firms running Cisco WebEx are told to update their software, Medical devices vulnerable to KRACK Wi-Fi attacks, Kitty Cryptomining Malware Cashes in on Drupalgeddon 2.0, Facebook fires engineer accused of stalking women, and more on this episode of Pau… Continue reading Drupal, Twitter, iLo Ransomware, and Cambridge Analytica – Paul’s Security Weekly #558

400 popular Drupal based websites hacked to mine cryptocurrency

By Waqas
Vulnerability in Drupal CMS Converted Popular Websites into Monero mining
This is a post from HackRead.com Read the original post: 400 popular Drupal based websites hacked to mine cryptocurrency
Continue reading 400 popular Drupal based websites hacked to mine cryptocurrency

Drupal, RSAC, & Facebook – Application Security Weekly #13

In the news, Drupal 7 and 8 core critical releases, Irony of Leaky App at #RSAC Not Lost on Attendees, US FDA seeking Congressional Authority for new requirements, Facebook fuels broad privacy debate by tracking non-users, & more on this episode o… Continue reading Drupal, RSAC, & Facebook – Application Security Weekly #13