fuente: https://cybersecuritynews.com/wsus-servers-leveraged-to-deliver-malware/
A novel attack chain that allows adversaries to hijack Windows Server Update Services (WSUS), the trusted patch-management architecture widely deployed across enterprise environments.
The research, published by SpecterOps researcher Beyviel David, demonstrates how organizations hosting WSUS on an external SQL Server database face a critical operational risk: attackers with local network access can coerce authentication, capture a database session, and mint malicious “updates” that domain-joined endpoints trust and execute automatically.
Investigadores de ciberseguridad han alertado sobre una campaña de phishing generalizada basada en correo electrónico que emplea técnicas de ataque de intermedi...
Leer artículo →Si alguna vez has usado i3 en Linux, conoces esa sensación. Ese momento en que te das cuenta de que tus ventanas pueden organizarse solas sin que tengas que mov...
Leer artículo →Kali365 convierte una cuenta legítima de Microsoft en una puerta de acceso a datos corporativos. Este kit de phishing ataca a organizaciones estadounidenses con...
Leer artículo →