SecurityWeek reports that several recently addressed memory corruption vulnerabilities in the GE Cimplicity human-machine interface and supervisory control and data acquisition system, tracked as CVE-2023-3463, were noted by cybersecurity researcher Michael Heinzl, who discovered the bugs, to be similar to those exploited in attacks by the Russian state-sponsored threat operation Sandworm nearly a decade ago.
Citrix has disclosed that vulnerable NetScaler Application Delivery Controller and Gateway instances have been targeted in ongoing attacks leveraging the critical remote code execution flaw, tracked as CVE-2023-3519, The Hacker News reports.
Android users have been lured to install malicious web apps through the exploitation of the platform's WebAPK technology, according to The Hacker News.
More than 70,000 small office/home office routers have been infiltrated by the novel AVrecon botnet for over two years, making it one of the largest botnets targeted at SOHO devices ever, The Hacker News reports.