01 Apr VMware fixes authentication bypass in data center security software VMware has addressed a critical vulnerability in the VMware Carbon Black Cloud Workload appliance that could allow attackers to bypass authentication after exploiting vulnerable servers. […]
13 Mar 15-year-old Linux kernel bugs let attackers gain root privileges Three security vulnerabilities found in the iSCSI subsystem of the Linux kernel could allow local attackers with basic user privileges to gain root privileges on unpatched Linux systems. […]
11 Mar Chinese state hackers target Linux systems with new malware Security researchers at Intezer have discovered a previously undocumented backdoor dubbed RedXOR, with links to a Chinese-sponsored hacking group and used in ongoing attacks targeting Linux systems. […]
11 Feb Intel fixes vulnerabilities in Windows, Linux graphics drivers Intel addressed 57 vulnerabilities during this month’s Patch Tuesday, including high severity ones impacting Intel Graphics Drivers. […]
03 Feb Latest macOS Big Sur also has SUDO root privilege escalation flaw Recently discovered Linux SUDO privilege escalation vulnerability, CVE-2021-3156 (aka Baron Samedit) also impacts the latest Apple macOS Big Sur with no patch available yet. […]
27 Jan Linux malware uses open-source tool to evade detection AT&T Alien Labs security researchers have discovered that the TeamTNT cybercrime group upgraded their Linux crypto-mining with open-source detection evasion capabilities. […]
26 Jan New Linux SUDO flaw lets local users gain root privileges A now-fixed Sudo vulnerability allowed any local user to gain root privileges on Unix-like operating systems without requiring authentication. […]
11 Jan Microsoft releases Linux endpoint detection and response features Microsoft announced today that Microsoft Defender for Endpoint’s detection and response (EDR) capabilities are now generally available on Linux servers. […]
07 Jan Linux malware authors use Ezuri Golang crypter for zero detection Multiple malware authors are using the “Ezuri” crypter and memory loader written in Go to evade detection by antivirus products. Source code for Ezuri is available on GitHub for anyone to use. […]
30 Dec New worm turns Windows, Linux servers into Monero miners A newly discovered and self-spreading Golang-based malware has been actively dropping XMRig cryptocurrency miners on Windows and Linux servers since early December. […]