Security Leftovers
-
2023-07-10 [Older] Can the new NCSC's Active Cyber Defence programme enhance the UK's cybersecurity?
-
2023-07-11 [Older] Apple Pulls Its Latest Emergency Security Update That Fixed a Safari Bug Because It Introduced Another One
-
2023-07-13 [Older] Apple Releases New Security Patch to Patch the Patch It Messed Up
-
2023-07-11 [Older] Better Update Your iPhone, iPad, and Mac Right Now
-
2023-07-13 [Older] Cisco Releases Security Update for SD-WAN vManage API
-
2023-07-13 [Older] Juniper Releases Multiple Security Updates for Juno OS
-
2023-07-12 [Older] CISA and FBI Release Cybersecurity Advisory on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online
-
2023-07-11 [Older] Adobe Releases Security Updates for ColdFusion and InDesign
-
2023-07-11 [Older] Fortinet Releases Security Update for FortiOS and FortiProxy
-
2023-07-11 [Older] Microsoft Releases July 2023 Security Updates
-
2023-07-11 [Older] Mozilla Releases Security Update for Firefox and Firefox ESR
-
2023-07-13 [Older] Enterprise Linux Security Episode 70 - The Red Hat Saga Continues
-
2023-07-13 [Older] CISA Adds Two Known Vulnerabilities to Catalog
-
2023-07-13 [Older] CISA Releases Nine Industrial Control Systems Advisories
-
2023-07-13 [Older] Siemens SIMATIC CN 4100
-
2023-07-13 [Older] Siemens RUGGEDCOM ROX
-
2023-07-13 [Older] Siemens SiPass Integrated
-
2023-07-13 [Older] Siemens SIMATIC CN 4100
-
2023-07-13 [Older] Siemens SIMATIC MV500 Devices
-
2023-07-13 [Older] Rockwell Automation PowerMonitor 1000
-
2023-07-13 [Older] Honeywell Experion PKS, LX and PlantCruise
-
2023-07-12 [Older] CISA Releases One Industrial Control Systems Advisory
-
2023-07-12 [Older] Rockwell Automation Select Communication Modules
-
2023-07-11 [Older] CISA Adds Five Known Vulnerabilities to Catalog
-
2023-07-11 [Older] CISA Releases Four Industrial Control Systems Advisories
-
2023-07-11 [Older] Rockwell Automation Enhanced HIM
-
2023-07-11 [Older] Sensormatic Electronics iSTAR
-
2023-07-11 [Older] Panasonic Control FPWin Pro7
-
2023-07-12 [Older] Former Amazon Security Engineer Arrested and Charged with Hacking Crypto Exchange
-
Red Menshen APT Group Deploying BPFDoor in Linux Kernel
APTs Red Menshen expands targets to Linux and cloud servers, as seen in ransomware attacks on VMware ESXi, Mirai botnet variations, and cloud-focused stealers and crypto miners.
APT groups extend focus beyond Windows, signified by Sandworm’s attacks on Linux-based routers. Unlike cybercrime malware with broad targets, APT malware prioritizes persistent stealth and routine maintenance.
Red Menshen, an APT group active in the Middle East and Asia, continuously enhances the BPFDoor backdoor, utilizing Berkeley Packet Filter (BPF) to evade Linux and Solaris OS firewalls.