Daily brief for 2018-11-11
ASIA
- UPnP-Exploiting Botnet Infecting 100,000+ Home Routers and Still Counting
- CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
- A new spam #botnet took advantage of a UPnP vulnerability to infect over 100,000 home routers in India, China and
- School Headmaster Fired For Stealing School Electricity To Mine Ethereum
- Security Affairs newsletter Round 188 – News of the week
WORLD
- 'DerpTrolling’ faces jail time for Sony DoS attacks
- UPnP-Exploiting Botnet Infecting 100,000+ Home Routers and Still Counting
- DJI Drone Vulnerability Due to DJI Forum’s Weakness, Patched by its Vendor
- A new spam #botnet took advantage of a UPnP vulnerability to infect over 100,000 home routers in India, China and
- School Headmaster Fired For Stealing School Electricity To Mine Ethereum
- Security Affairs newsletter Round 188 – News of the week
- All new ShadowTalk episode is out! Ep. 50: CISCO ASA 0-day and VirtualBox Vulnerability
Hear from Rafael Amado, @mazzazone, & @drshellface:
ATTACKS
- Florida Department of Health Breached, Patients' Private Information Exposed
- How to choose the best password manager | Avast
- An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
THREATS
- Exclusive: Fileless malware driving uptake of behavioural analytics
- Cisco Patches Multiple Critical Security Flaws Affecting Different Products
- Annoyed Researcher Disclosed Zero-Day Vulnerability In VirtualBox Without Informing Oracle
- DJI Drone Vulnerability Due to DJI Forum’s Weakness, Patched by its Vendor
- Nvidia GPU Side Channel Vulnerability Disclosed
- Demystifying: Cryptocurrency Mining Threats
- CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
- A new spam #botnet took advantage of a UPnP vulnerability to infect over 100,000 home routers in India, China and
- School Headmaster Fired For Stealing School Electricity To Mine Ethereum
- An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
- Linux Cryptocurrency miner leverages rootkit to avoid detection
- How does site isolation defend against #Spectre vulnerabilities? Expert Michael Cobb of @thehairyITdog explains
- All new ShadowTalk episode is out! Ep. 50: CISCO ASA 0-day and VirtualBox Vulnerability
Hear from Rafael Amado, @mazzazone, & @drshellface:
- WooCommerce vulnerability affected a large number of websites
- Debian 9.6 release, fix more bugs and security vulnerabilities
CRIME
- 'DerpTrolling’ faces jail time for Sony DoS attacks
- An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in
- Security Affairs newsletter Round 188 – News of the week
POLITICS
- CVE-2018-15961: Adobe ColdFusion Flaw exploited in attacks in the wild
- An espionage group used stolen #DigitalCertificates to sign Plead #malware and used a password stealer component that was used in