The Hacker News-- What is the difference between a penetration test and a red team exercise? The common understanding is that a red team exercise is a pen-test on steroids, but what does that mean? While both programs are performed by ethical hackers, whether they are in-house residents or contracted externally, the difference runs deeper. … Continue reading Red Team — Automation or Simulation?
Tag: The Hacker News
FinSpy Spyware for Mac and Linux OS Targets Egyptian Organisations
The Hacker News-- Amnesty International today exposed details of a new surveillance campaign that targeted Egyptian civil society organizations with previously undisclosed versions of FinSpy spyware designed to target Linux and macOS systems. Developed by a German company, FinSpy is extremely powerful spying software that is being sold as a legal law enforcement tool to … Continue reading FinSpy Spyware for Mac and Linux OS Targets Egyptian Organisations
Microsoft Windows XP Source Code Reportedly Leaked Online
The Hacker News-- Microsoft's long-lived operating system Windows XP—that still powers over 1% of all laptops and desktop computers worldwide—has had its source code leaked online, allegedly, along with Windows Server 2003. Yes, you heard that right. The source code for Microsoft's 19-year-old operating system was published as a torrent file on notorious bulletin board … Continue reading Microsoft Windows XP Source Code Reportedly Leaked Online
Fortinet VPN with Default Settings Leave 200,000 Businesses Open to Hackers
The Hacker News-- As the pandemic continues to accelerate the shift towards working from home, a slew of digital threats have capitalized on the health concern to exploit weaknesses in the remote work infrastructure and carry out malicious attacks. Now according to network security platform provider SAM Seamless Network, over 200,000 businesses that have deployed the Fortigate VPN … Continue reading Fortinet VPN with Default Settings Leave 200,000 Businesses Open to Hackers
Major Instagram App Bug Could’ve Given Hackers Remote Access to Your Phone
The Hacker News-- Ever wonder how hackers can hack your smartphone remotely? In a report shared with The Hacker News today, Check Point researchers disclosed details about a critical vulnerability in Instagram's Android app that could have allowed remote attackers to take control over a targeted device just by sending victims a specially crafted image. What's more … Continue reading Major Instagram App Bug Could’ve Given Hackers Remote Access to Your Phone
Detecting and Preventing Critical ZeroLogon Windows Server Vulnerability
The Hacker News-- If you're administrating Windows Server, make sure it's up to date with all recent patches issued by Microsoft, especially the one that fixes a recently patched critical vulnerability that could allow unauthenticated attackers to compromise the domain controller. Dubbed 'Zerologon' (CVE-2020-1472) and discovered by Tom Tervoort of Secura, the privilege escalation vulnerability exists … Continue reading Detecting and Preventing Critical ZeroLogon Windows Server Vulnerability
A New Hacking Group Hitting Russian Companies With Ransomware
The Hacker News-- As ransomware attacks against critical infrastructure continue to spike in recent months, cybersecurity researchers have uncovered a new entrant that has been actively trying to conduct multistage attacks on large corporate networks of medical labs, banks, manufacturers, and software developers in Russia. The ransomware gang, codenamed "OldGremlin" and believed to be a Russian-speaking … Continue reading A New Hacking Group Hitting Russian Companies With Ransomware
Unsecured Microsoft Bing Search Server Exposed User Queries and Location Data
The Hacker News-- A back-end server associated with Microsoft Bing exposed sensitive data of the search engine's mobile application users, including search queries, device details, and GPS coordinates, among others. The logging database, however, doesn't include any personal details such as names or addresses. The data leak, discovered by Ata Hakcil of WizCase on September 12, is … Continue reading Unsecured Microsoft Bing Search Server Exposed User Queries and Location Data
British Hacker Sentenced to 5 Years for Blackmailing U.S. Companies
The Hacker News-- A UK man who threatened to publicly release stolen confidential information unless the victims agreed to fulfill his digital extortion demands has finally pleaded guilty on Monday at U.S. federal district court in St. Louis, Missouri. Nathan Francis Wyatt , 39, who is a key member of the infamous international hacking group … Continue reading British Hacker Sentenced to 5 Years for Blackmailing U.S. Companies
A Patient Dies After Ransomware Attack Paralyzes German Hospital Systems
The Hacker News-- German authorities last week disclosed that a ransomware attack on the University Hospital of Düsseldorf (UKD) caused a failure of IT systems, resulting in the death of a woman who had to be sent to another hospital that was 20 miles away. The incident marks the first recorded casualty as a consequence of cyberattacks … Continue reading A Patient Dies After Ransomware Attack Paralyzes German Hospital Systems
