The Information Highway

The Information Highway

all things technology risk and cybersecurity

Evasive Sign1 malware campaign infects 39,000 WordPress sites

back-2

A previously unknown malware campaign called Sign1 has infected over 39,000 websites over the past six months, causing visitors to see unwanted redirects and popup ads.

Continue reading
  152 Hits

Exploit released for Fortinet RCE bug used in attacks, patch now

Fortinet

Security researchers have released a proof-of-concept (PoC) exploit for a critical vulnerability in Fortinet's FortiClient Enterprise Management Server (EMS) software, which is now actively exploited in attacks.

Continue reading
  297 Hits

Windows 11, Tesla, and Ubuntu Linux hacked at Pwn2Own Vancouver

Pwn2Own_Vancouver

On the first day of Pwn2Own Vancouver 2024, contestants demoed 19 zero-day vulnerabilities in Windows 11, Tesla, Ubuntu Linux and other devices and software to win $732,500 and a Tesla Model 3 car.

Continue reading
  242 Hits

Fortinet FortiClientEMS critical vulnerability

Threat-Advisory-Banner

Threat update

 Fortinet has released security updates for an unauthorized code execution vulnerability impacting their FortiClientEMS (Endpoint Management Server) product. The vulnerability, CVE-2023-48788, is related to a flaw that allows unauthenticated malicious actors to execute code or commands onto the server via purposely crafted requests. This Cybersecurity Threat Advisory highlights various recommendations to mitigate the potential impact on your devices.

Continue reading
  147 Hits

OpenEdge authentication bypass vulnerability

Threat-Advisory-Banner

Threat update

A critical vulnerability (CVE-2024-1403) affecting Progress Software OpenEdge Authentication Gateway and AdminServer impacts versions 11.7.18 and earlier, 12.2.13 and earlier, and 12.8.0. The vulnerability allows unauthorized access due to manipulation of username and password combinations during the authentication process. Review this Cybersecurity Threat Advisory to minimize the potential impact on your systems.

Continue reading
  574 Hits

Critical Fortinet vulnerability

Threat-Advisory-Banner

Threat update

 A critical vulnerability is affecting many Fortinet devices. Approximately 150,000 Fortinet OS and FortiProxy Secure Web Gateway systems are believed to be exposed to this flaw. Continue reading this Cybersecurity Threat Advisory to learn how you can mitigate the potential risk and impact of this vulnerability.

Continue reading
  210 Hits

New acoustic attack determines keystrokes from typing patterns

mechanical-keyboard-1

Researchers have demonstrated a new acoustic side-channel attack on keyboards that can deduce user input based on their typing patterns, even in poor conditions, such as environments with noise.

Continue reading
  1887 Hits

Critical vulnerabilities in QNAP devices

Threat-Advisory-Banner

Threat update

Critical authentication bypass vulnerabilities have been identified in QNAP network attached storage (NAS) devices. These flaws pose significant risks, allowing unauthorized access to affected devices. Review the recommendations in this Cybersecurity Threat Advisory to ensure your systems are secure. 

Continue reading
  1068 Hits

StopCrypt: Most widely distributed ransomware evolves to evade detection

sto_20240317-173853_1

A new variant of StopCrypt ransomware (aka STOP) was spotted in the wild, employing a multi-stage execution process that involves shellcodes to evade security tools.

Continue reading
  1076 Hits

SIM swappers hijacking phone numbers in eSIM attacks

Smartphone-SIM

SIM swappers have adapted their attacks to steal a target's phone number by porting it into a new eSIM card, a digital SIM stored in a rewritable chip present on many recent smartphone models.

Continue reading
  391 Hits

Nissan confirms ransomware attack exposed data of 100,000 people

Nissan-1

Nissan Oceania is warning of a data breach impacting 100,000 people after suffering a cyberattack in December 2023 that was claimed by the Akira ransomware operation.

Continue reading
  1012 Hits

USB attacks

Threat-Advisory-Banner

Threat update

There have been increasing reports of threat actors leveraging a classic malware delivery method in recent months: USB attacks. Continue reading to learn how you can prevent these attacks and reduce risks for your customers. 

Continue reading
  241 Hits

Researchers expose Microsoft SCCM misconfigs usable in cyberattacks

Hacker-microsoft-windows

Security researchers have created a knowledge base repository for attack and defense techniques based on improperly setting up Microsoft's Configuration Manager, which could allow an attacker to execute payloads or become a domain controller. 

Continue reading
  253 Hits

Over 15,000 hacked Roku accounts sold for 50¢ each to buy hardware

roku-header-image

Roku has disclosed a data breach impacting over 15,000 customers after hacked accounts were used to make fraudulent purchases of hardware and streaming subscriptions.

Continue reading
  237 Hits

Fake Leather wallet app on Apple App Store is a crypto drainer

wallet

The developers of the Leather cryptocurrency wallet are warning of a fake app on the Apple App Store, with users reporting it is a wallet drainer that stole their digital assets.

Continue reading
  252 Hits

Hackers exploit WordPress plugin flaw to infect 3,300 sites with malware

back

Hackers are breaching WordPress sites by exploiting a vulnerability in outdated versions of the Popup Builder plugin, infecting over 3,300 websites with malicious code.

Continue reading
  214 Hits

Critical Fortinet flaw may impact 150,000 exposed devices

Fortinet

Scans on the public web show that approximately 150,000 Fortinet FortiOS and FortiProxy secure web gateway systems are vulnerable to CVE-2024-21762, a critical security issue that allows executing code without authentication.

Continue reading
  222 Hits

QNAP warns of critical auth bypass flaw in its NAS devices

QNAP

QNAP warns of vulnerabilities in its NAS software products, including QTS, QuTS hero, QuTScloud, and myQNAPcloud, that could allow attackers to access devices.

Continue reading
  186 Hits

UnitedHealth brings some Change Healthcare pharmacy services back online

UnitedHealth_Group

Optum's Change Healthcare has started to bring systems back online after suffering a crippling BlackCat ransomware attack last month that led to widespread disruption to the US healthcare system.

Continue reading
  270 Hits

Stealthy GTPDOOR Linux malware targets mobile operator networks

Linux_tux

Security researcher HaxRob discovered a previously unknown Linux backdoor named GTPDOOR, designed for covert operations within mobile carrier networks.

Continue reading
  199 Hits