Aggregator
CNVD漏洞周报2024年第51期
DigiEver IoT Devices Exploited To Deliver Mirai-based Malware
A new Mirai-based botnet, “Hail Cock Botnet,” has been exploiting vulnerable IoT devices, including DigiEver DVRs and TP-Link devices with CVE-2023-1389. The botnet, active since September 2024, leverages a variant of Mirai malware with enhanced encryption. A recent uptick in attacks targeting the URI /cgi-bin/cgi_main.cgi, exploiting an RCE vulnerability in DigiEver DS-2105 Pro devices, aligns […]
The post DigiEver IoT Devices Exploited To Deliver Mirai-based Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
Hackers Exploiting PLC Controllers In US Water Management System To Gain Remote Access
A joint Cybersecurity Advisory (CSA) warns of ongoing exploitation attempts by Iranian Islamic Revolutionary Guard Corps (IRGC)-affiliated cyber actors using the online persona “CyberAv3ngers.” These actors are targeting and compromising Unitronics Vision Series programmable logic controllers (PLCs), specifically those manufactured by the Israeli company Unitronics. Water and Wastewater Systems (WWS) are among the many critical […]
The post Hackers Exploiting PLC Controllers In US Water Management System To Gain Remote Access appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
宣布个事,我们放假了!
New Watering Hole Attack That Used Fake Adobe Flash Player Update To Deliver Malware
Cybersecurity threats are increasingly targeting vulnerabilities in publicly exposed assets like VPNs and firewalls, exploited by various actors, including APT groups and ransomware gangs. While this focus is understandable, it’s crucial not to neglect traditional attack vectors like phishing emails, malicious websites, and social engineering, as they remain potent tools in the hands of attackers. […]
The post New Watering Hole Attack That Used Fake Adobe Flash Player Update To Deliver Malware appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.