BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Vulnerabilities Exposed Millions of Cox Modems to Remote Hacking
/in General NewsCox recently patched a series of vulnerabilities that could have allowed hackers to remotely take control of millions of modems.
The post Vulnerabilities Exposed Millions of Cox Modems to Remote Hacking appeared first on SecurityWeek.
SecurityWeek – Read More
Russians Love YouTube. That’s a Problem for the Kremlin
/in General NewsYouTube remains the only major US-based social media platform available in Russia. It’s become “indispensable” to everyday people, making a ban tricky. Journalists and dissidents are taking advantage.
Security Latest – Read More
37 Vulnerabilities Patched in Android
/in General NewsAndroid’s June 2024 security update resolves 37 vulnerabilities, including high-severity flaws in Framework and System.
The post 37 Vulnerabilities Patched in Android appeared first on SecurityWeek.
SecurityWeek – Read More
DarkGate Malware Replaces AutoIt with AutoHotkey in Latest Cyber Attacks
/in General NewsCyber attacks involving the DarkGate malware-as-a-service (MaaS) operation have shifted away from AutoIt scripts to an AutoHotkey mechanism to deliver the last stages, underscoring continued efforts on the part of the threat actors to continuously stay ahead of the detection curve.
The updates have been observed in version 6 of DarkGate released in March 2024 by its developer RastaFarEye, who
The Hacker News – Read More
Oracle WebLogic Server OS Command Injection Flaw Under Active Attack
/in General NewsThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a security flaw impacting the Oracle WebLogic Server to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
Tracked as CVE-2017-3506 (CVSS score: 7.4), the issue concerns an operating system (OS) command injection vulnerability that could be exploited to obtain unauthorized
The Hacker News – Read More
Ockam and Redpanda Partner to Launch Zero-Trust Streaming Data Platform
/in General NewsPost Content
darkreading – Read More
Atlassian Confluence High-Severity Bug Allows Code Execution
/in General NewsBecause of the role the Confluence Server plays in managing documentation and knowledge data bases, the researchers recommend users upgrade to patch CVE-2024-21683 as soon as possible.
darkreading – Read More
Ways iOS Sideloading Can Be More Secure
/in General NewsSideloading apps is now possible on iOS devices, forcing Apple to add some security features in an attempt to mitigate the dangers of loading unknown apps.
darkreading – Read More
Europol’s Hunt Begins for Emotet Malware Mastermind
/in General NewsInternational law enforcement Operation Endgame shifts its crackdown to focus on individual adversaries.
darkreading – Read More
Portkey Announces Integration of Zero-Knowledge Proofs for Enhanced Identity Management and Security
/in General NewsPost Content
darkreading – Read More