An Iranian state hacking group is using custom malware to compromise IoT and OT infrastructure in Israel and the United States. An attack wave from Islamic Revolutionary Guard Corps-affiliated "CyberAv3ngers" swept up fuel management systems made by U.S.-based firm Gilbarco Veeder-Root.
IT Outage, Downtime Procedures Affecting Services at California Healthcare Provider Cybercriminals claim they stole 17 million patient records from a southern California regional healthcare provider that is still struggling with IT and phone systems outages that have been disrupting patient care since the organization was hit by a ransomware attack on Dec. 1.
Also: How Leading Cybersecurity Firms Are Gearing Up for 2025 In the latest weekly update, ISMG editors discussed the shooting death of the UnitedHealthcare CEO and its wider implications for AI-driven decision-making, market strategies for the top cybersecurity companies in 2025, and how these strategies reflect industry trends.
Around 30,000 German IoT Devices Infected From Backdoored Android Applications The German federal information security agency disrupted a botnet that infected thousands of backdoored digital picture frames and media players made with knockoff Android operating systems shipped from China. The agency identified at least 30,000 infected devices.
A vulnerability was found in GNU Binutils 2.34/2.35/2.36/2.37/2.38. It has been rated as problematic. Affected by this issue is the function stab_demangle_v3_arg of the file stabs.c. The manipulation leads to memory leak.
This vulnerability is handled as CVE-2022-47007. Access to the local network is required for this attack. There is no exploit available.
A vulnerability classified as problematic was found in Linux Kernel up to 5.10.227/5.15.168/6.1.113/6.6.57/6.11.4. This vulnerability affects the function pc_clock_settime of the component posix-clock. The manipulation leads to improper check for unusual conditions.
This vulnerability was named CVE-2024-50195. The attack needs to be approached within the local network. There is no exploit available.
It is recommended to upgrade the affected component.