BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
New SnailLoad Attack Relies on Network Latency Variations to Infer User Activity
/in General NewsNew attack named SnailLoad allows a remote attacker to infer websites and videos viewed by a user without direct access to network traffic.
The post New SnailLoad Attack Relies on Network Latency Variations to Infer User Activity appeared first on SecurityWeek.
SecurityWeek – Read More
Widespread Use of Rafel RAT Puts 3.9 Billion Android Devices at Risk
/in General NewsThe new Rafel RAT is an Android malware capable of stealing data, spy on you, and even lock your phone. Keep your Android updated, download apps safely, and avoid phishing attacks to stay secure.
Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – Read More
EFF Issues New Warning After Discovery of Automated License Plate Reader Vulnerabilities
/in General NewsThe EFF has issued a warning over the use of automated license plate readers following the discovery of serious vulnerabilities.
The post EFF Issues New Warning After Discovery of Automated License Plate Reader Vulnerabilities appeared first on SecurityWeek.
SecurityWeek – Read More
Critical RCE Vulnerability Discovered in Ollama AI Infrastructure Tool
/in General NewsCybersecurity researchers have detailed a now-patch security flaw affecting the Ollama open-source artificial intelligence (AI) infrastructure platform that could be exploited to achieve remote code execution.
Tracked as CVE-2024-37032, the vulnerability has been codenamed Probllama by cloud security firm Wiz. Following responsible disclosure on May 5, 2024, the issue was addressed in version
The Hacker News – Read More
The NYSE’s $10M Wake-up Call
/in General NewsThe settlement between the SEC and the owner of the New York Stock Exchange is a critical reminder of the vulnerabilities within financial institutions’ cybersecurity frameworks as well as the importance of regulatory oversight.
darkreading – Read More
LivaNova USA Discloses Data Breach Impacting 130,000 Individuals
/in General NewsLivaNova USA says the personal and medical information of 130,000 individuals was compromised in an October 2023 data breach.
The post LivaNova USA Discloses Data Breach Impacting 130,000 Individuals appeared first on SecurityWeek.
SecurityWeek – Read More
Push Notification Fatigue Leads to LA County Health Department Data Breach
/in General NewsThe Los Angeles County Department of Health Services discloses a data breach caused by push notification spamming attack.
The post Push Notification Fatigue Leads to LA County Health Department Data Breach appeared first on SecurityWeek.
SecurityWeek – Read More
LockBit Ransomware Claims 33 TB of US Federal Reserve Data for Ransom
/in General NewsLockBit ransomware claims to hold 33 TB of data from the US Federal Reserve for ransom. Hackread.com investigates, reaching out to CISA for comments on the breach and ongoing negotiations. Stay updated!
Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – Read More
Vietnamese Members of FIN9 Hacking Group Charged in US
/in General NewsThe US has announced charges against four Vietnamese nationals for hacking businesses and causing $71 million in losses.
The post Vietnamese Members of FIN9 Hacking Group Charged in US appeared first on SecurityWeek.
SecurityWeek – Read More
Mailcow Patches Critical XSS and File Overwrite Flaws – Update NOW
/in General NewsMailcow email servers faced critical vulnerabilities (CVE-2024-31204 and CVE-2024-30270) allowing potential remote code execution. Update to Mailcow 2024-04 (Moopril Update) to patch the security holes and keep your email server safe.
Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – Read More