Quantcast
Channel: Chao Lei, Author at Unit 42
Browsing latest articles
Browse All 9 View Live

Threat Brief: Microsoft Critical Vulnerabilities (CVE-2022-26809,...

We provide an overview of CVE-2022-26809, CVE-2022-26923 and CVE-2022-26925, along with recommendations for mitigation. The post Threat Brief: Microsoft Critical Vulnerabilities (CVE-2022-26809,...

View Article



Mirai Variant MooBot Targeting D-Link Devices

Attackers are leveraging known vulnerabilities in D-Link devices to deliver MooBot, a Mirai variant, potentially leading to further DDoS attacks. The post Mirai Variant MooBot Targeting D-Link Devices...

View Article

Realtek SDK Vulnerability Attacks Highlight IoT Supply Chain Threats

We observed a recent spate of supply chain attacks attempting to exploit CVE-2021-35394, affecting IoT devices with chipsets made by Realtek. The post Realtek SDK Vulnerability Attacks Highlight IoT...

View Article

Mirai Variant V3G4 Targets IoT Devices

We observed Mirai variant V3G4 targeting IoT devices in three separate campaigns in 2022. The post Mirai Variant V3G4 Targets IoT Devices appeared first on Unit 42.

View Article

Old Wine in the New Bottle: Mirai Variant Targets Multiple IoT Devices

We analyze Mirai variant IZ1H9, which targets IoT devices. Our overview includes campaigns observed, botnet configuration and vulnerabilities exploited. The post Old Wine in the New Bottle: Mirai...

View Article


IoT Under Siege: The Anatomy of the Latest Mirai Campaign Leveraging Multiple...

Mirai is a still-active botnet with new variants. We highlight observed exploitation of IoT vulnerabilities — due to low complexity and high impact. The post IoT Under Siege: The Anatomy of the Latest...

View Article

Blocking Dedicated Attacking Hosts Is Not Enough: In-Depth Analysis of a...

Analysis of an XorDDoS campaign from August 2023 includes the trojan’s behaviors, a look at its intricate network infrastructure and our data-rich insights. The post Blocking Dedicated Attacking Hosts...

View Article

Financial Fraud APK Campaign

Drawing attention to the ways threat actors steal PII for financial fraud, this article focuses on a malicious APK campaign aimed at Chinese users. The post Financial Fraud APK Campaign appeared first...

View Article


New Vulnerability in QNAP QTS Firmware: CVE-2023-50358

New zero-day vulnerability CVE-2023-50358 affects QNAP Network Attached Storage (NAS) devices. Our analysis includes its impact determined by our product data. The post New Vulnerability in QNAP QTS...

View Article

Browsing latest articles
Browse All 9 View Live




Latest Images