Tux Machines

Security Leftovers

Posted by Roy Schestowitz on Jul 16, 2023

=> today's howtos | Audiocasts: The Linux Link Tech Show, FLOSS Weekly, and Lots in YouTube

2023-07-10 [Older] Can the new NCSC's Active Cyber Defence programme enhance the UK's cybersecurity?

=> ↺ 2023-07-10 [Older] Can the new NCSC's Active Cyber Defence programme enhance the UK's cybersecurity?

2023-07-11 [Older] Apple Pulls Its Latest Emergency Security Update That Fixed a Safari Bug Because It Introduced Another One

=> ↺ 2023-07-11 [Older] Apple Pulls Its Latest Emergency Security Update That Fixed a Safari Bug Because It Introduced Another One

2023-07-13 [Older] Apple Releases New Security Patch to Patch the Patch It Messed Up

=> ↺ 2023-07-13 [Older] Apple Releases New Security Patch to Patch the Patch It Messed Up

2023-07-11 [Older] Better Update Your iPhone, iPad, and Mac Right Now

=> ↺ 2023-07-11 [Older] Better Update Your iPhone, iPad, and Mac Right Now

2023-07-13 [Older] Cisco Releases Security Update for SD-WAN vManage API

=> ↺ 2023-07-13 [Older] Cisco Releases Security Update for SD-WAN vManage API

2023-07-13 [Older] Juniper Releases Multiple Security Updates for Juno OS

=> ↺ 2023-07-13 [Older] Juniper Releases Multiple Security Updates for Juno OS

2023-07-12 [Older] CISA and FBI Release Cybersecurity Advisory on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

=> ↺ 2023-07-12 [Older] CISA and FBI Release Cybersecurity Advisory on Enhanced Monitoring to Detect APT Activity Targeting Outlook Online

2023-07-11 [Older] Adobe Releases Security Updates for ColdFusion and InDesign

=> ↺ 2023-07-11 [Older] Adobe Releases Security Updates for ColdFusion and InDesign

2023-07-11 [Older] Fortinet Releases Security Update for FortiOS and FortiProxy

=> ↺ 2023-07-11 [Older] Fortinet Releases Security Update for FortiOS and FortiProxy

2023-07-11 [Older] Microsoft Releases July 2023 Security Updates

=> ↺ 2023-07-11 [Older] Microsoft Releases July 2023 Security Updates

2023-07-11 [Older] Mozilla Releases Security Update for Firefox and Firefox ESR

=> ↺ 2023-07-11 [Older] Mozilla Releases Security Update for Firefox and Firefox ESR

2023-07-13 [Older] Enterprise Linux Security Episode 70 - The Red Hat Saga Continues

=> ↺ 2023-07-13 [Older] Enterprise Linux Security Episode 70 - The Red Hat Saga Continues

2023-07-13 [Older] CISA Adds Two Known Vulnerabilities to Catalog

=> ↺ 2023-07-13 [Older] CISA Adds Two Known Vulnerabilities to Catalog

2023-07-13 [Older] CISA Releases Nine Industrial Control Systems Advisories

=> ↺ 2023-07-13 [Older] CISA Releases Nine Industrial Control Systems Advisories

2023-07-13 [Older] Siemens SIMATIC CN 4100

=> ↺ 2023-07-13 [Older] Siemens SIMATIC CN 4100

2023-07-13 [Older] ​Siemens RUGGEDCOM ROX

=> ↺ 2023-07-13 [Older] ​Siemens RUGGEDCOM ROX

2023-07-13 [Older] Siemens SiPass Integrated

=> ↺ 2023-07-13 [Older] Siemens SiPass Integrated

2023-07-13 [Older] Siemens SIMATIC CN 4100

=> ↺ 2023-07-13 [Older] Siemens SIMATIC CN 4100

2023-07-13 [Older] ​Siemens SIMATIC MV500 Devices

=> ↺ 2023-07-13 [Older] ​Siemens SIMATIC MV500 Devices

2023-07-13 [Older] Rockwell Automation PowerMonitor 1000

=> ↺ 2023-07-13 [Older] Rockwell Automation PowerMonitor 1000

2023-07-13 [Older] Honeywell Experion PKS, LX and PlantCruise

=> ↺ 2023-07-13 [Older] Honeywell Experion PKS, LX and PlantCruise

2023-07-12 [Older] CISA Releases One Industrial Control Systems Advisory

=> ↺ 2023-07-12 [Older] CISA Releases One Industrial Control Systems Advisory

2023-07-12 [Older] Rockwell Automation Select Communication Modules

=> ↺ 2023-07-12 [Older] Rockwell Automation Select Communication Modules

2023-07-11 [Older] CISA Adds Five Known Vulnerabilities to Catalog

=> ↺ 2023-07-11 [Older] CISA Adds Five Known Vulnerabilities to Catalog

2023-07-11 [Older] CISA Releases Four Industrial Control Systems Advisories

=> ↺ 2023-07-11 [Older] CISA Releases Four Industrial Control Systems Advisories

2023-07-11 [Older] Rockwell Automation Enhanced HIM

=> ↺ 2023-07-11 [Older] Rockwell Automation Enhanced HIM

2023-07-11 [Older] ​Sensormatic Electronics iSTAR

=> ↺ 2023-07-11 [Older] ​Sensormatic Electronics iSTAR

2023-07-11 [Older] Panasonic Control FPWin Pro7

=> ↺ 2023-07-11 [Older] Panasonic Control FPWin Pro7

2023-07-12 [Older] Former Amazon Security Engineer Arrested and Charged with Hacking Crypto Exchange

=> ↺ 2023-07-12 [Older] Former Amazon Security Engineer Arrested and Charged with Hacking Crypto Exchange

Red Menshen APT Group Deploying BPFDoor in Linux Kernel

=> ↺ Red Menshen APT Group Deploying BPFDoor in Linux Kernel

APTs Red Menshen expands targets to Linux and cloud servers, as seen in ransomware attacks on VMware ESXi, Mirai botnet variations, and cloud-focused stealers and crypto miners.
APT groups extend focus beyond Windows, signified by Sandworm’s attacks on Linux-based routers. Unlike cybercrime malware with broad targets, APT malware prioritizes persistent stealth and routine maintenance.
Red Menshen, an APT group active in the Middle East and Asia, continuously enhances the BPFDoor backdoor, utilizing Berkeley Packet Filter (BPF) to evade Linux and Solaris OS firewalls.

=> gemini.tuxmachines.org

Proxy Information
Original URL
gemini://gemini.tuxmachines.org/n/2023/07/16/Security_Leftovers.gmi
Status Code
Success (20)
Meta
text/gemini;lang=en-GB
Capsule Response Time
140.308353 milliseconds
Gemini-to-HTML Time
2.289413 milliseconds

This content has been proxied by September (ba2dc).