This Week in Security: Symbiote Research and Detection, Routing Hijacks, Bruggling, and More

Last week we covered the Symbiote Rootkit, based on the excellent work by Blackberry, Intezer, and Cyber Geeks. This particular piece of malware takes some particularly clever and devious steps …read more Continue reading This Week in Security: Symbiote Research and Detection, Routing Hijacks, Bruggling, and More

This Week in Security: Asterisk, TikTok, Gitlab, And Finally a Spam Solution

There’s an ongoing campaign that’s compromising FreePBX systems around the world. It seems to be aimed specifically at Elastix systems, using CVE-2021-45461, a really nasty Remote Code Execution (RCE) from …read more Continue reading This Week in Security: Asterisk, TikTok, Gitlab, And Finally a Spam Solution

Hacker Liberates Hyundai Head Unit, Writes Custom Apps

Photo of the head unit , with "Hacked by greenluigi1" in the center of the UI

[greenluigi1] bought a Hyundai Ioniq car, and then, to our astonishment, absolutely demolished the Linux-based head unit firmware. By that, we mean that he bypassed all of the firmware update …read more Continue reading Hacker Liberates Hyundai Head Unit, Writes Custom Apps

This Week in Security: Retbleed, Post-Quantum, Python-atomicwrites, and the Mysterious Cuteboi

Yet another entry in the “why we can’t have nice things” category, Retbleed was announced this week, as yet another speculative execution vulnerability. This one is mitigated in hardware for …read more Continue reading This Week in Security: Retbleed, Post-Quantum, Python-atomicwrites, and the Mysterious Cuteboi