Juniper: Customer routers infected with malware via default passwords

Several Juniper customers have had to deal with compromised routers because the devices were still using standard passwords, the network company said. Last Wednesday, several customers reported suspicious behavior on their Session Smart Routers (SSR). The devices were found to be infected with a variant of the Mirai malware and were used to carry out […]

Juniper: Customer routers infected with malware via default passwords Read More »

Judge holds NSO liable for spyware attack on WhatsApp users

An American judge has ruled that NSO Group is responsible for the spyware attack on fourteen hundred WhatsApp users in 2019. WhatsApp director Will Cathcart calls the ruling a ‘major victory’ for privacy. Citizen Lab security researcher and spyware expert John Scott-Railton calls it a big win for spyware victims and a big loss for

Judge holds NSO liable for spyware attack on WhatsApp users Read More »

Critical flaw in Sophos firewalls enables remote code execution

A critical vulnerability in Sophos’ firewalls allows remote code execution or could give an attacker SSH access. The company has released security updates to fix the problem. The first critical vulnerability (CVE-2024-12727) allows an unauthenticated attacker to perform SQL Injection, thereby gaining access to a firewall database. If the firewall has a specific configuration and

Critical flaw in Sophos firewalls enables remote code execution Read More »