fuente: https://cybersecuritynews.com/wsus-servers-leveraged-to-deliver-malware/
A novel attack chain that allows adversaries to hijack Windows Server Update Services (WSUS), the trusted patch-management architecture widely deployed across enterprise environments.
The research, published by SpecterOps researcher Beyviel David, demonstrates how organizations hosting WSUS on an external SQL Server database face a critical operational risk: attackers with local network access can coerce authentication, capture a database session, and mint malicious “updates” that domain-joined endpoints trust and execute automatically.
Más de 17.000 repositorios falsos en GitHub están distribuyendo el malware SmartLoader tras la reactivación de la campaña FakeGit a principios de este mes para...
Leer artículo →Desde el lanzamiento del primer Kindle Fire en 2011, las tabletas de Amazon han mantenido un ecosistema sumamente cerrado. Históricamente, estos dispositivos fu...
Leer artículo →El 8 de octubre, el FBI y agencias de otros seis países informaron que piratas informáticos vinculados a una empresa china de ciberseguridad robaron correos ele...
Leer artículo →