New botnet in the wild targeting routers and IoT devices

The cyber criminal group Keksec is using Enemybot to attack routers and IoT devices, exploiting a remote code execution (RCE) vulnerability CVE-2022-27226. Enemybot: a new Mirai, Gafgyt hybrid botnet joins the scene | ZDNet New Enemybot botnet blends Linux backdoor bot Gafgyt, Mirai • The Register This botnet is part …

Sophos report even government agencies can miss hackers in their network

Hacker spent nearly five months inside a US regional government network, downloading files, using software and deleting logs, before deploying Lockbit ransomware. Sophos recreated the attack from what was left of the logs and believe the attackers got in through a public facing remote desktop protocol (RDP) port – something …

Software vulnerabilities, patches and updates are an important part of a “defence in depth” cyber security plan

US federal alert warns of the discovery of malicious cyber tools | US national security | The Guardian I use the Cybersecurity and Infrastructure Security Agency, (CISA) a lot. Many of the blog posts I run here, start there. However there is a vast amount of information on the CISA …