BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Will 2025 See a Rise of NHI Attacks?
/in General NewsThe flurry of non-human identity attacks at the end of 2024 demonstrates extremely strong momentum heading into the new year. That does not bode well.
darkreading – Read More
Over $380,000 Paid Out on First Day of Pwn2Own Automotive 2025
/in General News$380,000 paid out on the first day of Pwn2Own Automotive 2025 for exploits targeting car infotainment units, operating systems, and chargers.
The post Over $380,000 Paid Out on First Day of Pwn2Own Automotive 2025 appeared first on SecurityWeek.
SecurityWeek – Read More
Hackers Exploit Zero-Day in cnPilot Routers to Deploy AIRASHI DDoS Botnet
/in General NewsThreat actors are exploiting an unspecified zero-day vulnerability in Cambium Networks cnPilot routers to deploy a variant of the AISURU botnet called AIRASHI to carry out distributed denial-of-service (DDoS) attacks.
According to QiAnXin XLab, the attacks have leveraged the security flaw since June 2024. Additional details about the shortcomings have been withheld to prevent further abuse.
Some
The Hacker News – Read More
Cyber Insights 2025: APIs – The Threat Continues
/in General NewsAPIs are easy to develop, simple to implement, and frequently attacked. They are prime and lucrative targets for cybercriminals.
The post Cyber Insights 2025: APIs – The Threat Continues appeared first on SecurityWeek.
SecurityWeek – Read More
Oracle Patches 200 Vulnerabilities With January 2025 CPU
/in General NewsOracle has released 318 new security patches to address roughly 200 unique CVEs as part of its January 2025 Critical Patch Update.
The post Oracle Patches 200 Vulnerabilities With January 2025 CPU appeared first on SecurityWeek.
SecurityWeek – Read More
Murdoc Botnet Ensnaring Avtech, Huawei Devices
/in General NewsThe Mirai-based Murdoc botnet has been actively targeting Avtech and Huawei devices for roughly half a year.
The post Murdoc Botnet Ensnaring Avtech, Huawei Devices appeared first on SecurityWeek.
SecurityWeek – Read More
Record-Breaking DDoS Attack Reached 5.6 Tbps
/in General NewsCloudflare saw a 53% increase in DDoS attack frequency last year, when it blocked a record-breaking 5.6 Tbps attack.
The post Record-Breaking DDoS Attack Reached 5.6 Tbps appeared first on SecurityWeek.
SecurityWeek – Read More
Researcher Says ABB Building Control Products Affected by 1,000 Vulnerabilities
/in General NewsABB has patched building control product vulnerabilities that can expose many facilities to remote attacks.
The post Researcher Says ABB Building Control Products Affected by 1,000 Vulnerabilities appeared first on SecurityWeek.
SecurityWeek – Read More
Discover Hidden Browsing Threats: Free Risk Assessment for GenAI, Identity, Web, and SaaS Risks
/in General NewsAs GenAI tools and SaaS platforms become a staple component in the employee toolkit, the risks associated with data exposure, identity vulnerabilities, and unmonitored browsing behavior have skyrocketed. Forward-thinking security teams are looking for security controls and strategies to address these risks, but they do not always know which risks to prioritize. In some cases, they might have
The Hacker News – Read More
President Trump Pardons Silk Road Creator Ross Ulbricht After 11 Years in Prison
/in General NewsU.S. President Donald Trump on Tuesday granted a “full and unconditional pardon” to Ross Ulbricht, the creator of the infamous Silk Road drug marketplace, after spending 11 years behind bars.
“I just called the mother of Ross William Ulbricht to let her know that in honor of her and the Libertarian Movement, which supported me so strongly, it was my pleasure to have just signed a full and
The Hacker News – Read More