Nov 12, 2018

Daily brief for 2018-11-11

ASIA

  1. UPnP-Exploiting Botnet Infecting 100,000+ Home Routers and Still Counting
  2. CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
  3. A new spam #botnet took advantage of a UPnP vulnerability to infect over 100,000 home routers in India, China and
  4. School Headmaster Fired For Stealing School Electricity To Mine Ethereum
  5. Security Affairs newsletter Round 188 – News of the week

WORLD

  1. 'DerpTrolling’ faces jail time for Sony DoS attacks
  2. UPnP-Exploiting Botnet Infecting 100,000+ Home Routers and Still Counting
  3. DJI Drone Vulnerability Due to DJI Forum’s Weakness, Patched by its Vendor
  4. A new spam #botnet took advantage of a UPnP vulnerability to infect over 100,000 home routers in India, China and
  5. School Headmaster Fired For Stealing School Electricity To Mine Ethereum
  6. Security Affairs newsletter Round 188 – News of the week
  7. All new ShadowTalk episode is out! Ep. 50: CISCO ASA 0-day and VirtualBox Vulnerability Hear from Rafael Amado, @mazzazone, & @drshellface:

ATTACKS

  1. Florida Department of Health Breached, Patients' Private Information Exposed
  2. How to choose the best password manager | Avast
  3. An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in

THREATS

  1. Exclusive: Fileless malware driving uptake of behavioural analytics
  2. Cisco Patches Multiple Critical Security Flaws Affecting Different Products
  3. Annoyed Researcher Disclosed Zero-Day Vulnerability In VirtualBox Without Informing Oracle
  4. DJI Drone Vulnerability Due to DJI Forum’s Weakness, Patched by its Vendor
  5. Nvidia GPU Side Channel Vulnerability Disclosed
  6. Demystifying: Cryptocurrency Mining Threats
  7. CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
  8. A new spam #botnet took advantage of a UPnP vulnerability to infect over 100,000 home routers in India, China and
  9. School Headmaster Fired For Stealing School Electricity To Mine Ethereum
  10. An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
  11. Linux Cryptocurrency miner leverages rootkit to avoid detection
  12. How does site isolation defend against #Spectre vulnerabilities? Expert Michael Cobb of @thehairyITdog explains
  13. All new ShadowTalk episode is out! Ep. 50: CISCO ASA 0-day and VirtualBox Vulnerability Hear from Rafael Amado, @mazzazone, & @drshellface:
  14. WooCommerce vulnerability affected a large number of websites
  15. Debian 9.6 release, fix more bugs and security vulnerabilities

CRIME

  1. 'DerpTrolling’ faces jail time for Sony DoS attacks
  2. An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
  3. Security Affairs newsletter Round 188 – News of the week

POLITICS

  1. CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
  2. An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in