[MY_SUBSCRIPTIONS]

Get cybersecurity news alerts delivered to your inbox

📡 [FLUX RSS]

Subscribe to the news feed

7 derniers jours

> FILTERS

> Last 7 Days

> CVE-2021-37109: Huawei Baseband MPU Security Protection Bypass via EDMA
Summary There is a vulnerability in the Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allows the baseband to bypass the Baseband’s MPU memory protections and circumvent RO and NX protections. The vulnerability was fixed in February 2022. Vulnerability Details CVE-2021-22430...
> CVE-2021-37115: Huawei DMSS Memory Access Management Configuration Unathorized Rewrite Via ASP DMA
Summary Last year we published research at Black Hat in which we disclosed multiple vulnerabilities in Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allowed some SoC cores or DMA-capable peripherals to directly access secure world memory and completely compromise the entire...
> Ransomware Hits American Healthcare Company Omnicell
Ransomware impacted certain internal systems
> CVE-2021-39986: Huawei Baseband Memory Access Permission Bypass And DMSS Memory Access Management Configuration Unathorized Rewrite Via LPMCU
Summary Last year we published research at Black Hat in which we disclosed multiple vulnerabilities in Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allowed some SoC cores or DMA-capable peripherals to directly access secure world memory and completely compromise the entire...
> CVE-2021-39991: Huawei DMSS Memory Access Management Configuration Unathorized Rewrite Via Peripheral DMA
Summary Last year we published research at Black Hat in which we disclosed multiple vulnerabilities in Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allowed some SoC cores or DMA-capable peripherals to directly access secure world memory and completely compromise the entire...
> US Government Warns Firms to Avoid Hiring North Korean IT Workers
North Korean IT workers are attempting to generate revenue for DPRK and conduct cyber intrusions
> CVE-2021-39992: Huawei Kernel Memory Access Permission Bypass via EDMA
Summary There is a vulnerability in the Huawei Kirin SoC’s DDR Controller (DMSS) Access Permission system which allows the Linux kernel to bypass memory access restrictions and directly compromise multiple privileged subsystems of the SoC. As demonstrated by CVE-2021-3710, CVE-2021-39991, CVE-2021-3...
> CVE-2021-40045: Huawei Recovery Update Zip Signature Verification Bypass
Summary In this advisory we are disclosing a signature verification bypass vulnerability in the Huawei recovery mode. The vulnerability can be used not only to apply unauthentic firmware updates but also to achieve arbitrary code execution in the recovery mode. Combining this advisory with the vulne...
> Interactive decompilation with rellic-xref
Rellic is a framework for analyzing and decompiling LLVM modules into C code, implementing the concepts described in the original paper presenting the Dream decompiler and its successor, Dream++. It recently made an appearance on this blog when I presented rellic-headergen, a tool for extracting deb...
> CVE-2021-40055: Huawei OTA Insecure SSL Configuration Man-In-The-Middle Vulnerability
Summary In this advisory we are disclosing a vulnerability in the Huawei Over-The-Air (OTA) update implementation that allows bypassing SSL protections and execute a Man-In-The-Middle attack. The vulnerability was fixed in March 2022. Vulnerability Details Huawei devices - both those running Android...
> (ISC)2 Offers 100,000 Free Entry-Level Certification Places
The 100K in the UK scheme is aimed at recent graduates and career changers seeking to work in cyber
> Fifth of Businesses Say Cyber-Attack Nearly Broke Them
Attacks surge 12% in 2021, according to leading insurer
> Using Stolen IAM Credentials
How to work with stolen IAM credentials and things to consider.
> Doctor Accused of Being Prolific Ransomware Developer
Venezuelan linked to Jigsaw and Thanos variants
> US and EU Move Closer on Cyber in New Trade Pact
Range of initiatives will push back against Russia and China
> Knowledge Base Digest - April 2022
Each month we publish numerous new articles and known issues to the WatchGuard Knowledge Base. Here is the new content published in April: Known Issues 10G SFP+ interfaces (eth8/eth9) on Firebox M590/M690 do not respond to traffic After upgrade to Fireware 12.8, IKEv2 BOVPNs that use VPN failover a...
> US Manufacturing Giant Parker Hit by Conti Ransomware Gang
The company announced that employees’ personally identifiable information was exposed in the breach
> Microsoft Identifies Botnet Variant Targeting Windows and Linux Systems
Microsoft advised organizations running Windows or Linux on internet-facing systems to take action
> Themes from Real World Crypto 2022
Last week, over 500 cryptographers from around the world gathered in Amsterdam for Real World Crypto 2022, meeting in person for the first time in over two years. As in previous years, we dispatched a handful of our researchers and engineers to attend the conference, listen to talks, and schmooze ob...
> 'The People Hacker' Jenny Radcliffe Inducted into Infosecurity Europe's Hall of Fame
Radcliffe will be officially inducted into the Hall of Fame during a keynote session at this year’s Infosecurity Europe 2022