BleepingComputer reports that vulnerable TBK Vision DVR-4104 and DVR-4216 digital video recording devices impacted by the command injection flaw, tracked as CVE-2024-3721, have been targeted by a novel Mirai botnet malware variant.
Manufacturing organizations have been subjected to cyber intrusions from 71% more threat actors in 2024, compared with the previous year, while a majority of the 29 hacking operations targeting the sector from 2024 to the first three months of 2025 have been setting their sights on operational technology systems, GBHackers News reports.
In the security news: Vicious Trap - The malware hiding in your router, Hacking your car, WSL is open-source, but why?, Using AI to find vulnerabilities - a case study, Why you should not build your own password manager, The inside scoop behind Lumma Infostealer, Hacking a smart grill, Hardcoded credentials on end of life routers and "Alphanetworks...
Internet of Things devices running on Linux have been targeted by the newly emergent PumaBot botnet in SSH brute-force attacks, according to Security Affairs.
This week in the security news: Malware-laced printer drivers, Unicode steganography, Rhode Island may sue Deloitte for breach. They may even win. Japan's active cyber defense law, Stop with the ping, LLMs replace Stack Overflow - ya don't say?, Aggravated identity theft is aggravating, Ivanti DSM and why you shouldn't use it, EDR is still playing ...
This week in the security news: Android catches up to iOS with its own lockdown mode, Just in case, there is a new CVE foundation, Branch privilege injection attacks, My screen is vulnerable, The return of embedded devices to take over the world - 15 years later, Attackers are going after MagicINFO, Hacking Starlink, Mitel SIP phones can be hacked,...
Sudo watch this show, Hallucinations, Kickidler, Powershool redux, Old Man Router, PSMU, Aaran Leyland, and More, on this edition of the Security Weekly News.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.