Tag Linux

Cicada3301 Ransomware Targets French Peugeot Dealership in Latest Attack

Summary of Recent Ransomware Incident Involving Cicada3301 The ransomware group known as Cicada3301 has claimed responsibility for a significant data breach impacting Concession Peugeot, a well-known French automotive dealership associated with the Peugeot brand. According to the group, approximately 35GB of sensitive information has been compromised, further intensifying their ongoing…

Read MoreCicada3301 Ransomware Targets French Peugeot Dealership in Latest Attack

Linux Faces Its First-Ever UEFI Bootkit Attack

Endpoint Security Bootkitty: Researchers Identify Linux’s First Bootkit, Primarily Conceptual Rather Than Malicious Prajeet Nair (@prajeetspeaks) • November 28, 2024 Bootkitty discovered in the wild is recognized as the first bootkit targeting Linux. (Image: Shutterstock) Cybersecurity experts have unearthed the first bootkit specifically engineered to compromise Linux systems by manipulating…

Read MoreLinux Faces Its First-Ever UEFI Bootkit Attack

Online Code Exploits LogoFAIL to Install Bootkitty Linux Backdoor

A recent vulnerability has been identified that targets Secure Boot protocols in certain Linux machines using UEFI firmware developed by Insyde. This exploit, known as LogoFAIL, allows attackers to bypass Secure Boot—an essential security feature designed to ensure that only trusted firmware and software are executed during the boot process.…

Read MoreOnline Code Exploits LogoFAIL to Install Bootkitty Linux Backdoor

Linux First Ever Targeted by a Bootkit Attack

Researchers Identify First Bootkit Targeting Linux Systems Cybersecurity experts have uncovered a significant advancement in malware threats with the identification of the first bootkit specifically engineered to compromise Linux systems. Dubbed "Bootkitty," this malicious software operates within the Unified Extensible Firmware Interface (UEFI), manipulating the boot process for harmful intents.…

Read MoreLinux First Ever Targeted by a Bootkit Attack

Discovered in the Wild: The First Ever Unkillable UEFI Bootkit for Linux

In recent developments within the cybersecurity landscape, a new form of malware known as Bootkitty has emerged, targeting Linux systems with techniques historically associated with Windows infections. This bootkit operates at the firmware level, specifically within the Unified Extensible Firmware Interface (UEFI), a crucial component that executes prior to the…

Read MoreDiscovered in the Wild: The First Ever Unkillable UEFI Bootkit for Linux

CISA Warns Federal Agencies to Address Actively Exploited Vulnerability in Linux Kernel

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added a significant Linux kernel vulnerability to its Known Exploited Vulnerabilities (KEV) catalog, highlighting the threat of active exploitation. This flaw, designated as CVE-2024-1086, has been assigned a high CVSS score of 7.8 and pertains to a critical use-after-free issue within…

Read MoreCISA Warns Federal Agencies to Address Actively Exploited Vulnerability in Linux Kernel

Embargo Ransomware Compromises Security Protections

Fraud Management & Cybercrime, Ransomware Emerging Ransomware Group Utilizes Rust-Based Tools in New Attack Strategies Prajeet Nair (@prajeetspeaks) • October 23, 2024 Image: Shutterstock A newly formed ransomware group has emerged with advanced capabilities, reportedly developing tools designed to bypass traditional security measures. This burgeoning threat is distinguished by its…

Read MoreEmbargo Ransomware Compromises Security Protections

Critical OpenSSH Vulnerability Could Enable Root RCE on Linux Systems

OpenSSH Vulnerability Exposes Critical Risk to Linux Systems In a significant development for cybersecurity, the maintainers of OpenSSH have issued urgent security updates addressing a severe vulnerability that may allow unauthenticated remote code execution with root-level access on glibc-based Linux systems. This vulnerability, designated CVE-2024-6387 and dubbed "regreSSHion," resides within…

Read MoreCritical OpenSSH Vulnerability Could Enable Root RCE on Linux Systems

Stealthy Malware Has Infected Thousands of Linux Systems Since 2021

A recent incident highlighted on the CentOS subreddit reveals a growing threat to server security, as an administrator reported systems infected with a cryptocurrency hijacker known as perfcc and perfctl. The administrator became aware of the compromise following alerts from their monitoring setup indicating 100% CPU usage, which raised immediate…

Read MoreStealthy Malware Has Infected Thousands of Linux Systems Since 2021