Legal action taken by Microsoft, ESET, Black Lotus Labs, Palo Alto Networks, Health-ISAC and the Financial Services-ISAC has disrupted the massive ZLoader botnet.
Dragos CEO and founder Rob Lee said his firm had “high confidence” that the malware was developed by a state actor with an intent to disrupt key infrastructure.
Fifteen million endpoints, including those supporting government agencies, news organizations, and military operations, leveraging the HP Teradici PCoIP client and agent product for Windows, macOS, and Linux are affected by critical security flaws.
These flaws could be exploited over the network and internet, requiring a low skillset, no privileges, and no interaction. The research found the robots mostly likely don’t allow security agents to be installed, so the only mitigation would be to apply the updates or completely reconfigure the devices’ operating system.
Cisco has announced the new 1RU Secure Firewall 3100 Series, which prioritizes data security for workers returning to offices and enhanced corporate resource management, and the Smart Workspaces service with various in-office functions for hybrid workers.
Operators of the Qbot botnet, also known as Qakbot, Quakbot, and Pinkslipbot, have begun leveraging phishing emails with malicious MSI Windows Installer package-laced ZIP archive attachments to spread malware instead of the traditional approach of malware distribution through phishing emails containing Microsoft Office documents with malicious macros.