The FBI and Australian Federal Police have partnered to arrest and indict an unnamed Australian who developed Firebird/Hive remote access trojan and California-based Edmond Chakhmakchyan, also known as Corruption, who allegedly marketed the RAT, according to BleepingComputer.
BleepingComputer reports that intrusions involving known security flaws and brute force tactics have been deployed by Romanian threat operation RUBYCARP for at least a decade, with the group currently operating a botnet with more than 600 breached servers.
Google has updated its Chrome browser to support the V8 Sandbox aimed at curbing the spread of V8 memory corruption issues within the host process, according to The Hacker News.
More than 92,000 outdated internet-exposed D-Link Network Attached Storage devices could be breached in attacks exploiting a newly discovered arbitrary command injection and hardcoded backdoor vulnerability, tracked as CVE-2024-3273, which could result in sensitive data access, system configuration modifications, and denial-of-service conditions, reports Security Affairs.
SecurityWeek reports that China-made devices in U.S. networks have increased by 40% year-over-year to nearly 300,000 in February, accounting for 4% of all U.S.-located devices, despite federal government efforts to curtail the utilization of Chinese products in the country, including a recent executive order emphasizing the security risks of China-made cranes, cars, and energy-storage batteries.
Google has warned of ongoing attacks targeting a pair of high-severity zero-day vulnerabilities impacting its Pixel smartphones, including the bootloader information disclosure bug, tracked as CVE-2024-29745, and firmware privilege escalation flaw, tracked as CVE-2024-29748, reports The Hacker News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.