KEEP IN TOUCH
Subscribe to our mailing list to get free tips on Data Protection and Cybersecurity updates weekly!
CISA Urges Vendors to Patch BrakTooth Bugs After Exploits Release Researchers have released public exploit code and a proof of concept tool to test Bluetooth devices against System-on-a-Chip (SoC) security bugs impacting multiple vendors, including Intel, Qualcomm, Texas Instruments, and Cypress. Collectively known as BrakTooth, these 16 flaws impact commercial Bluetooth stacks on over 1,400 chipsets
Phishing Emails Deliver Spooky Zombie-themed MirCop Ransomware A new phishing campaign pretending to be supply lists infects users with the MirCop ransomware that encrypts a target system in under fifteen minutes. The actors begin the attack by sending an unsolicited email to the victim, supposedly following up on a previous arrangement about an order. The
Popular ‘coa’ NPM Library Hijacked to Steal User Passwords Popular npm library ‘coa’ was hijacked today with malicious code injected into it, ephemerally impacting React pipelines around the world. The ‘coa’ library, short for Command-Option-Argument, receives about 9 million weekly downloads on npm, and is used by almost 5 million open source repositories on GitHub.
Cisco Fixes Hard-coded Credentials and Default SSH Key Issues Cisco has released security updates to address critical security flaws allowing unauthenticated attackers to log in using hard-coded credentials or default SSH keys to take over unpatched devices. CISA also encouraged users and administrators today to review Cisco’s advisories and apply all the necessary updates to block attempts