PixPirate: Malware Stealing Banking Passwords

PixPirate, the new strain of mobile malware targeting the Pix instant payment platform in Brazil. Learn about the dangers and steps you can take to protect yourself

Dimitris Gkoutzamanis

  • Brazil
  • Central Bank of Brazil
  • instant payment platform
  • mobile malware

Toyota Supplier Management Network Hacked

A security researcher, Eaton Zveare, discovered a vulnerability in Toyota's Global Supplier Preparation Information Management System (GSPIMS) and was able to access sensitive data of thousands of suppliers and users worldwide. Toyota quickly addressed the issue and fixed the vulnerability.

TheCISO

  • Data Breach
  • Eaton Zveare
  • security vulnerability
  • supplier management network

OpenSSH Version 9.2 Addresses Security Bugs

The maintainers of OpenSSH have released version 9.2 to address a pre-authentication double free vulnerability in the OpenSSH server (sshd). Learn about the vulnerability, its potential impact, and how to protect yourself

TheCISO

  • double free
  • memory safety
  • OpenSSH
  • pre-authentication

HeadCrab Malware Threatens Redis Servers

Protect your Redis server from the fast-spreading HeadCrab malware. Learn about the malicious botnet network, its annual profit, and how to secure your environment.

TheCISO

  • botnet network
  • cryptocurrency mining
  • HeadCrab malware
  • Malware

Zero-Day Vulnerability Found in Fortra’s GoAnywhere MFT

A zero-day vulnerability in Fortra's GoAnywhere MFT managed file transfer application is being actively exploited in the wild. Security researchers have warned of over 1,000 on-premise instances publicly accessible on the internet. No patch is currently available, but Fortra has released workarou…

TheCISO

Binwalk Security Tool Vulnerable to Path Traversal Attack

A security vulnerability in Binwalk, a popular Linux command-line tool used for analyzing and extracting firmware images, could lead to remote code execution. The path traversal issue is caused by a failed attempt to mitigate risk in the Professional File System extractor plugin. The vulnerabilit…

TheCISO

  • Binwalk
  • firmware analysis
  • Linux
  • path traversal

F5 BIG-IP Vulnerability: A Threat to System Stability

F5 has issued a warning about a high-severity format string vulnerability in BIG-IP. An authorized attacker may cause a denial-of-service or execute arbitrary code. Versions of BIG-IP from 13.1.5 to 17.0.0 are vulnerable. Protect your system by checking if your product is affected and using iHeal…

TheCISO

The Future of Encryption

Explore the potential of quantum-safe cryptography and quantum cryptography as enhanced solutions for secure communication and data protection. The article covers the technology behind these cryptographic methods, their potential for eliminating ransomware attacks, and their role in ensuring data…

Nick Janka

  • AI
  • Artificial Intelligence
  • Cryptography
  • Machine Learning