New Octo2 Android Banking Trojan Emerges with Device Takeover Capabilities

September 24, 2024 at 07:01AM Cybersecurity researchers have uncovered a new version of the Android banking trojan, Octo, named Octo2. It boasts enhanced capabilities for device takeover and fraudulent transactions. The malware has been observed in European countries and is distributed through apps like Europe Enterprise, Google Chrome, and NordVPN. Octo2 is a significant advancement … Read more

Hackers exploit critical D-Link DIR-859 router flaw to steal passwords

June 29, 2024 at 11:24AM Hackers are exploiting a critical vulnerability (CVE-2024-0769) in D-Link DIR-859 WiFi routers to access sensitive data, including account information and passwords. Despite the router being end-of-life, D-Link has released a security advisory warning about the flaw in the “fatlady.php” file. This issue poses a significant security risk, and users are … Read more

Widely used modems in industrial IoT devices open to SMS attack

May 11, 2024 at 09:14AM Security flaws in Telit Cinterion cellular modems, reported by Kaspersky, allow remote attackers to execute arbitrary code via SMS. The most severe vulnerability, CVE-2023-47610, has a severity score of 9.8 and could allow attackers to take control of vulnerable devices without authentication. Telit has patched some vulnerabilities, but others remain. … Read more

Critical, Unpatched Cisco Zero-Day Bug Is Under Active Exploit

October 16, 2023 at 04:52PM Cisco has disclosed a critical zero-day vulnerability in the Web User Interface of its IOS XE operating system. The flaw, assigned as CVE-2023-20198, affects all Cisco IOS XE devices with the Web UI feature enabled and allows attackers to create an account with complete device control. Cisco advises customers to … Read more