A popular WiFi chip, ESP32, contains a security flaw that enables hackers to implant malware that can never be removed. The attack works by implanting code into eFuses, a chip feature that can only be configured once.
Category: cybercrime/malcode – Page 173
The Cowlitz County PUD is among more than a dozen utilities targeted in a recent cyberattack across the United States, according to an investigation by The Wall Street Journal published this week.
Cowlitz County PUD spokeswoman Alice Dietz confirmed Wednesday that the PUD’s firewall successfully blocked the only infected email that hackers sent.
“We’re proud of our IT department,” Dietz said. “They just continue to implement strong cybersecurity measures. This is a great example of why we take it so seriously.”
Microsoft security analysts reveal that cryptocurrency-stealing malware “Dexphot” already infected 80,000 computers earlier this year.
Microsoft reveals that new crypto-stealing malware “Dexphot” already infected 80,000 devices earlier this year.
Microsoft security engineers detailed today a new malware strain that has been infecting Windows computers since October 2018 to hijack their resources to mine cryptocurrency and generate revenue for the attackers.
Named Dexphot, this malware reached its peak in mid-June this year, when its botnet reached almost 80,000 infected computers.
Since then, the number of daily infections has been slowly going down, as Microsoft claims it deployed countermeasures to improve detections and stop attacks.
O.o…
The communications system of Mexico’s oil giant Pemex is still suffering the lingering effects of a cyberattack that occurred earlier this month, sources from the company told Bloomberg.
A ransomware attack caused administrative operations at Pemex to grind to a halt on November 10, with the company announcing the resumption of work soon after, saying the actual attack had been prevented.
The attackers used the Ryuk ransomware, which specifically targets companies with annual revenues of between $500 million and $1 billion. The Ryuk ransomware gets dropped into a network by another malware and soon after begins encrypting files. Yet the encryption begins with a delay, which gives the attackers time to study their target and how much money they could extort from it.
Some facilities unable to access patient records, order drugs or pay employees after their computers were hijacked.
Adding one more to the count of data breaches this year, now joins the cellular firm T-Mobile. Recently, T-Mobile has disclosed a security breach impacting some of its customers.
T-Mobile Disclosed Security Breach
According to the security notice shared by T-Mobile, the firm has (once again) suffered a security breach. The incident has reportedly impacted prepaid consumers.
It’s almost 2020 and some sysadmins are still leaving Docker admin ports exposed on the internet.
More than a dozen U.S. utilities that were targets in a recent wave of cyberattacks have been identified by The Wall Street Journal. Some of the utilities, most of which are relatively small, are located near dams, locks and other critical infrastructure.
These electricity providers were singled out in a hacking campaign that was brought to light in August by researchers at a Silicon Valley cybersecurity company. But little was known about the attacks until now.
Hacking the Pixel’s Titan M chip and finding exploits in the developer preview versions of Android will earn you the big bucks.