Extreme Hacking

We work in Dark, to serve the Light

Extreme Hacking /

Nah, National Cyber Security Centre doesn’t need its own minister, UK.gov tells Parliament

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: ABC News

The British government has rejected Parliamentary calls for greater ministerial control over the National Cyber Security Centre (NCSC), an arm of secretive spy agency GCHQ.

In addition, the government affirmed that it will actively try to remain a part of […]

By |March 10th, 2019|Cyber News|

Put down the cat, coffee, beer pint, martini, whatever you’re holding, and make sure you’ve updated Chrome (unless you enjoy being hacked)

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Updated If Google Chrome is bugging you to update it right now, please stop what you’re doing, and get that upgrade.

The latest version fixes a security vulnerability (CVE-2019-5786) that can be potentially exploited by malicious webpages to hijack the software, […]

By |March 8th, 2019|Cyber News|

NX-OS-hit! Got Cisco Nexus and MDS 9000 switches? Then you’ve got patching to do, too

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: ABC News

Cisco has published patches for a plethora of problems with its products, including vulns that could trigger denial-of-service conditions – and a sneaky one that “could allow an authenticated, remote attacker to execute arbitrary commands with root privileges”.

The root vuln exists […]

By |March 7th, 2019|Cyber News|

NSA may kill off mass phone spying program Snowden exposed, says Congressional staffer

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: ABC News

Special report The NSA may kill off a controversial mass surveillance program of Americans that was exposed by Edward Snowden, according to a Congressional staffer.

Luke Murry is national security advisor to House minority leader Kevin McCarthy (R-CA), and over the […]

By |March 7th, 2019|Cyber News|

Did you know?! Ghidra, the NSA’s open-sourced decompiler toolkit, is ancient Norse for ‘No backdoors, we swear!’

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

RSA The NSA has released its home-grown open-source reverse-engineering suite Ghidra that folks can use to poke around inside applications to hunt down security holes and other bugs.

Spoiler alert: it’s Apache 2.0-licensed, available for download here, and requires a Java runtime […]

By |March 7th, 2019|Cyber News|

When 2FA means sweet FA privacy: Facebook admits it slurps mobe numbers for more than just profile security

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Another week, another Facebook privacy storm.

This time, the Silicon Valley giant has been caught red-handed using people’s cellphone numbers, provided exclusively for two-factor authentication, for targeted advertising and search – after it previously insinuated it wouldn’t do that.

Folks handing […]

By |March 5th, 2019|Cyber News|

McAfee: Oops, our bad. Sharpshooter malware was the Norks’ Lazarus Group the whole time

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credit: The Register

McAfee (the antivirus firm, not John the dodgy “playboy”) reckons the Sharpshooter malware campaign it uncovered in late 2018 is the work of North Korean hacking crew the Lazarus Group.

Thanks to data from a command-and-control server that was “provided to […]

By |March 5th, 2019|Cyber News|

WinRAR versions released in the last 19 years impacted by severe security flaw

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: Zdnet

WinRAR, one of the world’s most popular Windows file compression applications, has patched last month a severe security flaw that can be abused to hijack users’ systems just by tricking a WinRAR user into opening a malicious archive.

The vulnerability, discovered […]

By |March 4th, 2019|Cyber News|

Banks risk $350bn loss to cyber-attacks — IMF

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: ABC News

IMF Managing Director, Christine Lagarde disclosed this while making the call for better regulation of the banking system as a requirement for building a safer, more sustainable and ethically sound financial sector.

Speaking in London on Thursday while delivering in […]

By |March 4th, 2019|Cyber News|

Running Elasticsearch 1.4.2 or earlier? There’s targeted malware going for your boxen

 

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

 

Credits: The Register

Cisco’s security limb has spotted nefarious people targeting Elasticsearch clusters using relatively ancient vulns to plant malware, cryptocurrency miners and worse – though it does root out some other cybercrims’ dodgy wares, cuckoo-style.

“These attackers are targeting clusters using versions […]

By |March 3rd, 2019|Cyber News|