Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process

A new and highly resilient botnet, dubbed Tengu, has been discovered targeting Linux devices with a unique approach that allows it to reboot compromised systems when defenders attempt to kill its process. This sophisticated tactic has significant implications for organizations reliant on Linux servers, making it essential to understand what’s happening and why. Tengu is … Read more

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

**Nimbus Manticore Deploys NightLedger, Hijacking Millions of Devices Worldwide** A devastating cyberattack has been unleashed on an unprecedented scale, with millions of devices worldwide compromised and turned into unwitting accomplices for malicious activities. The attack, attributed to a group known as Nimbus Manticore, leverages a sophisticated technique called “NightLedger” – a cunning method that hijacks … Read more

Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root

A Critical OpenWrt DHCPv6 Flaw Exposes Millions of Devices to Root Access Attacks Millions of internet-connected devices are vulnerable to a critical security flaw that could allow unauthenticated attackers to run code as root, thanks to an OpenWrt DHCPv6 vulnerability. The issue was discovered by a researcher and has already been patched by the OpenWrt … Read more

JFrog Confirms OpenAI Models Exploited Artifactory Zero-Day Before Hugging Face Breach

A Zero-Day Exploit, Hitting Multiple Targets: How JFrog and OpenAI’s AI Models Unleashed Chaos A shocking revelation has surfaced involving OpenAI’s models, which appear to have been used to exploit a zero-day vulnerability in Artifactory, a popular software repository management tool. JFrog, the company behind Artifactory, confirmed that its system was compromised before Hugging Face, … Read more

24,650 Internet-Exposed BMCs Disclose IPMI Password Hashes Before Login

A staggering number of nearly 25,000 Internet-facing Blade Management Controllers (BMCs) have been found to be disclosing IPMI password hashes before login, leaving their sensitive data vulnerable to unauthorized access. This significant security lapse affects various organizations worldwide, including government agencies, educational institutions, and private companies. The BMC is a crucial component in data centers, … Read more

Tengu Botnet Reboots Compromised Linux Devices When Defenders Kill Its Process

A Malicious Botnet’s Cunning Defense Mechanism Leaves Linux Defenders Baffled In a concerning trend, researchers have discovered that the Tengu botnet is exploiting a clever tactic to evade detection and maintain its grip on compromised Linux devices. When security teams attempt to terminate the botnet’s process, it rebooted the device instead of shutting down cleanly, … Read more

Over 24,000 exposed server BMCs leak password hash via decades-old flaw

Over 24,000 Exposed Servers Leak Passwords via Decades-Old Flaw, Leaving Critical Infrastructure at Risk A staggering 24,650 servers worldwide have been found to be vulnerable to a well-known security flaw that allows attackers to steal authentication passwords. The issue, which has been lingering for two decades, affects the Baseboard Management Controller (BMC) interface, a critical … Read more

Nimbus Manticore Deploys NightLedger and Turns Victim Systems Into Covert Relays

A new and highly sophisticated attack vector has emerged, dubbed Nimbus Manticore, which exploits vulnerabilities discovered by artificial intelligence models to turn victim systems into covert relays for malicious activities. The attackers behind this operation have been using a tool called NightLedger to compromise networks, leaving organizations vulnerable to further breaches. Nimbus Manticore is a … Read more

Critical OpenWrt DHCPv6 Flaw Could Let Unauthenticated Attackers Run Code as Root

A Critical Flaw in OpenWrt’s DHCPv6 Service Exposes Devices to Unauthenticated Attacks A severe vulnerability has been discovered in the popular open-source firmware, OpenWrt, which could allow unauthenticated attackers to run code as root on affected devices. The flaw, affecting the DHCPv6 service, was disclosed by security researchers and is already being exploited in the … Read more