Category: EN

0-Click Linux Kernel KSMBD RCE Exploit From N-Day Vulnerabilities

A 0-Click Linux Kernel KSMBD RCE Exploit From N-Day Vulnerabilities, achieving remote code execution on a two-year-out-of-date Linux 6.1.45 instance running the kernelspace SMB3 daemon, ksmbd.  By chaining two authenticated N-day flaws, CVE-2023-52440 and CVE-2023-4130, the exploit attains an unauthenticated…

Prolific Hackers Claim They Are ‘Going Dark’

Hackers who claim to be behind high-profile cyber-attacks this year say they have ‘fulfilled objectives’ and are ceasing activities This article has been indexed from Silicon UK Read the original article: Prolific Hackers Claim They Are ‘Going Dark’

China-linked Mustang Panda deploys advanced SnakeDisk USB worm

China-linked APT group Mustang Panda has been spotted using a new USB worm called SnakeDisk along with a new version of known malware China-linked APT group Mustang Panda (aka Hive0154, Camaro Dragon, RedDelta or Bronze President) has been spotted using an updated version of the TONESHELL…

Android security changes, CISA incentive audit, LLM usage

Android moving to “risk-based” security updates CISA accused of Cyber Incentive mismanagement  How security practitioners use LLMs Huge thanks to our sponsor, Drata Leading security teams trust SafeBase by Drata to turn trust into a growth engine. Our enterprise-grade Trust…

Balenciaga, Gucci, Alexander McQueen Customer Data Stolen

Hacking group steals data from luxury brands through parent company Kering, in latest of string of attacks on retailers this year This article has been indexed from Silicon UK Read the original article: Balenciaga, Gucci, Alexander McQueen Customer Data Stolen