Tag Archives: security

Researchers map out hard-to-kill, multi-layered spam botnet

A dropper component sent to the Akamai researchers led them to the discovery of a spamming botnet that consists of at least 83,000 compromised systems. The botnet is multi-layered, decentralized, a…

More:
Researchers map out hard-to-kill, multi-layered spam botnet

Xen Project plugs critical host hijacking flaw, patch ASAP

The latest security update (XSA-145 through 153) for the popular Xen virtualization software fixes nine issues. Eight of them can lead to Denial of Service, but the ninth is much more serious than…

Read More:
Xen Project plugs critical host hijacking flaw, patch ASAP

China is the top target for DDoS reflection attacks

China bore the brunt of DDoS reflection attacks last month, with 61 percent of the top attack destinations observed hitting Chinese-based systems, according to Nexusguard. Of the 21,845 attack events …

More here:
China is the top target for DDoS reflection attacks

Alleged Ukrainian botnet herder faces 43 years after Italian job snafu

Hacker fingered for heroin stunt takes the stand A Ukrainian man extradited from Italy has gone on trial in New Jersey accused of running a botnet and dealing in stolen credit cards.…

See more here:
Alleged Ukrainian botnet herder faces 43 years after Italian job snafu

DDoS defences spiked by CloudPiercer tool – paper

70% of sites trying to hide true IP address cough their secrets The real IP addresses of some 70 per cent of websites protected by popular distributed denial of service attack protection providers like CloudFlare, Prolexic and Incapsula can be revealed using a simple web tool built on newly uncovered flaws, according to a recent paper.…

Read More:
DDoS defences spiked by CloudPiercer tool – paper

Remote code exec hijack hole found in Huawei 4G USB modems

Ruskies sling malicious packet to trigger denial of service. Positive Technologies researchers Timur Yunusov and Kirill Nesterov have found since-patched remote execution and denial of service vulnerabilities in a popular Huawei 4G USB modem that can allow attackers to hijack connected computers.…

View original post here:
Remote code exec hijack hole found in Huawei 4G USB modems

Vigilante VXer FIXES SOHOpeless routers

Stallman sycophant offers password reminders and handy debug tips. Threat boffin Mario Ballano says VXers have broken into a host of routers creating a botnet dedicated solely to securing and hardening the devices.…

View post:
Vigilante VXer FIXES SOHOpeless routers

Patch NOW: VMware vCenter, ESXi can be pwned via your network

Remote-code execution danger on VM hosts VMware is urging users of its vCenter Server and ESXi software to install its latest patches to plug vulnerabilities that can allow remote-code execution and denial of service.…

View article:
Patch NOW: VMware vCenter, ESXi can be pwned via your network

Mobile advertising DDoS JavaScript drip serves site with 4.5bn hits

Once-theoretical attack vector appears fully-formed on CloudFlare’s doorstep CloudFlare has turned up an unusual form of denial-of-service attack: mobile advertisements that are pumping out around 275,000 HTTP requests per second.…

Continue reading here:
Mobile advertising DDoS JavaScript drip serves site with 4.5bn hits