Malware could be loaded into the Bluetooth chips of iPhones and could be executed even if the devices are turned off through a new attack surface discovered by researchers at the Technical University of Darmstadt's Secure Mobile Networking Lab, according to The Hacker News.
Novel link-layer Bluetooth Low Energy relay attacks that could evade mitigations and protections including encrypted link layer, detectable latency levels, and localization approaches could be performed by a new tool developed by NCC Group researchers, SecurityWeek reports.
SecurityWeek reports that malicious actors could exploit a medium-severity vulnerability in Siemens Desigo PXC4.E16 programmable building automation controllers that could make the device unavailable for days.
Industrial Control Systems/Supervisory Control and Data Acquisition (ICS/SCADA) operational and information technologies reinforce critical infrastructure security. And with recent threats demonstrating the risk involved with the nation's most critical assets, a surge of new players are joining the fray with IoT/ IIoT-related solutions.
More and more employees are using smaller and smaller devices with loads of applications to access corporate data. That brings different security considerations.
Nine security flaws impacting QNAP NAS devices, one of which is critical and could be abused to facilitate system takeovers, have been patched, according to The Hacker News.
A newly proposed bill targeting FDA user-fee program includes a number of medical device security requirements for manufacturers, including monitoring and identifying post-market cybersecurity vulnerabilities.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.