145,000+ Unsecured ICS Devices Exposed To Attackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant cybersecurity risk has been uncovered recently by Censys researchers that unveiled over 145,000 industrial control systems (ICS) devices are currently exposed to potential attackers on the internet. This …

Multiple Linux Kernel Vulnerabilities In Defer Partition Scanning Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Linux kernel development team has recently addressed two significant vulnerabilities affecting various versions of the Linux operating system. These security issues, discovered in the kernel’s handling of NVMe multipath …

2000+ Palo Alto Firewalls Hacked Exploiting New Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over 2,000 Palo Alto Networks firewalls have been compromised in a widespread attack exploiting recently patched vulnerabilities. The attack, which began in mid-November 2024, has raised alarm bells across the …

Top 6 Malware Persistence Mechanisms Used by Hackers: A Detailed Guide

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Persistence mechanisms play a critical role in modern cyberattacks, helping malware remain active on compromised systems even after reboots, log-offs, or restarts. By exploiting built-in system features, attackers ensure their …

Decade-Old Flaws In Ubuntu Server Package Let Attackers Gain Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Multiple decade-old Local Privilege Escalation (LPE) vulnerabilities discovered within the needrestart component installed by default in Ubuntu Server might allow a local attacker to achieve root access. needrestart is a …

Ghost Tap Attack, Hackers Stolen Credit Card Linked To Google Pay Or Apple Pay

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are actively using a new cash-out technique called “Ghost Tap” to cash out money using credit card information that has been stolen and connected to mobile payment services …

Critical AnyDesk Vulnerability Let Attackers Uncover User IP Address

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in AnyDesk, a popular remote desktop application, has been discovered that could allow attackers to expose users’ IP addresses. The flaw, identified as CVE-2024-52940, affects AnyDesk versions …

Gelsemium APT Hackers Attacking Linux Servers With New WolfsBane Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new Linux backdoor named WolfsBane has been recently uncovered by the ESET researchers, attributed to the Gelsemium advanced persistent threat (APT) group. This discovery marks the first public report …

10-Year Old Flaws In Ubuntu Server needrestart Package Let Attackers Gain Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity community is on high alert following the discovery of five critical Local Privilege Escalation (LPE) vulnerabilities in the needrestart component, a default package in Ubuntu Server. These flaws, …