AI EXPRESS - Hot Deal 4 VCs instabooks.co
  • AI
    Nvidia accelerates vision AI with Metropolis and related updates

    Nvidia accelerates vision AI with Metropolis and related updates

    Nvidia launches Omniverse workflow for car makers to digitize their operations

    Nvidia launches Omniverse workflow for car makers to digitize their operations

    GitHub unveils Copilot X: The future of AI-powered software development

    GitHub unveils Copilot X: The future of AI-powered software development

    The industrial metaverse: Are we there yet? | GTC panel

    The industrial metaverse: Are we there yet? | GTC panel

    Nvidia enters the speech AI race, joining Meta and Google

    Speech AI, supercomputing in the cloud, and GPUs for LLMs and generative AI among Nvidia’s next big moves

    TestGPT, a generative AI tool for ensuring code integrity, is released for beta

    TestGPT, a generative AI tool for ensuring code integrity, is released for beta

  • ML
    Automate Amazon Rekognition Custom Labels model training and deployment using AWS Step Functions

    Automate Amazon Rekognition Custom Labels model training and deployment using AWS Step Functions

    Best practices for viewing and querying Amazon SageMaker service quota usage

    Best practices for viewing and querying Amazon SageMaker service quota usage

    comparing the NDVI distributions of the current vs. the baseline period

    Remote monitoring of raw material supply chains for sustainability with Amazon SageMaker geospatial capabilities

    Accelerate Amazon SageMaker inference with C6i Intel-based Amazon EC2 instances

    Accelerate Amazon SageMaker inference with C6i Intel-based Amazon EC2 instances

    Intelligently search your organization’s Microsoft Teams data source with the Amazon Kendra connector for Microsoft Teams

    Intelligently search your organization’s Microsoft Teams data source with the Amazon Kendra connector for Microsoft Teams

    AccuShoot

    BigML is spinning out AccuShoot! –

    Announcing the Yammer connector for Amazon Kendra

    Announcing the Yammer connector for Amazon Kendra

    Bring legacy machine learning code into Amazon SageMaker using AWS Step Functions

    Bring legacy machine learning code into Amazon SageMaker using AWS Step Functions

    Maximize performance and reduce your deep learning training cost with AWS Trainium and Amazon SageMaker

    Maximize performance and reduce your deep learning training cost with AWS Trainium and Amazon SageMaker

  • NLP
    What could ChatGPT mean for Medical Affairs?

    What could ChatGPT mean for Medical Affairs?

    Want to Improve Clinical Care? Embrace Precision Medicine Through Deep Phenotyping

    Want to Improve Clinical Care? Embrace Precision Medicine Through Deep Phenotyping

    Presight AI and G42 Healthcare sign an MOU

    Presight AI and G42 Healthcare sign an MOU

    Meet Sketch: An AI code Writing Assistant For Pandas

    Meet Sketch: An AI code Writing Assistant For Pandas

    Exploring The Dark Side Of OpenAI's GPT Chatbot

    Exploring The Dark Side Of OpenAI’s GPT Chatbot

    OpenAI launches tool to catch AI-generated text

    OpenAI launches tool to catch AI-generated text

    Year end report, 1 May 2021- 30 April 2022.

    U.S. Consumer Spending Starts to Sputter; Labor Report to Give Fed Look at Whether Rate Increases Are Cooling Rapid Wage Growth

    Meet ETCIO SEA Transformative CIOs 2022 Winner Edmund Situmorang, CIOSEA News, ETCIO SEA

    Meet ETCIO SEA Transformative CIOs 2022 Winner Edmund Situmorang, CIOSEA News, ETCIO SEA

    His Highness Sheikh Theyab bin Zayed Al Nahyan witnesses MBZUAI inaugural commencement

    His Highness Sheikh Theyab bin Zayed Al Nahyan witnesses MBZUAI inaugural commencement

  • Vision
    NVIDIA Metropolis Ecosystem Grows With Advanced Development Tools to Accelerate Vision AI

    NVIDIA Metropolis Ecosystem Grows With Advanced Development Tools to Accelerate Vision AI

    Low Code and No Code Platforms for AI and Computer Vision

    Low Code and No Code Platforms for AI and Computer Vision

    Computer Vision Model Performance Evaluation (Guide 2023)

    Computer Vision Model Performance Evaluation (Guide 2023)

    PepsiCo Leads in AI-Powered Automation With KoiVision Platform

    PepsiCo Leads in AI-Powered Automation With KoiVision Platform

    USB3 & GigE Frame Grabbers for Machine Vision

    USB3 & GigE Frame Grabbers for Machine Vision

    Active Learning in Computer Vision - Complete 2023 Guide

    Active Learning in Computer Vision – Complete 2023 Guide

    Ensembling Neural Network Models With Tensorflow

    Ensembling Neural Network Models With Tensorflow

    Autoencoder in Computer Vision - Complete 2023 Guide

    Autoencoder in Computer Vision – Complete 2023 Guide

    CVAT: Computer Vision Annotation Tool - 2023 Guide

    CVAT: Computer Vision Annotation Tool – 2023 Guide

  • Robotics
    industrial robot picks an item for a customer order.

    Ambi Robotics optimizes sorting operations with AmbiAccess

    kuka industrial robots manufacturing cars

    Automotive industry sets record by employing 1M robots

    A Digit humanoid from Agility Robotics waving

    Next-gen Digit humanoid wants to automate logistics tasks

    amazon robots in a simulated world.

    NVIDIA is making AI easier to use

    Clearpath Robotics announces Husky Observer

    Clearpath Robotics announces Husky Observer

    OTTO Motors launches OTTO 600 and improved software

    OTTO Motors launches OTTO 600 and improved software

    Locus Robotics surpasses 1 billion units picks

    Locus Robotics introduces LocusONE multi-bot warehouse management

    Slip Robotics launches new trailer pallet unloading solution

    Slip Robotics launches new trailer pallet unloading solution

    MiR Insights software for its AMRs

    MiR Insights cloud-based software optimizes AMR fleets

  • RPA
    What is IT Process Automation? Use Cases, Benefits, and Challenges in 2023

    What is IT Process Automation? Use Cases, Benefits, and Challenges in 2023

    Benefits of Automated Claims Processing in Insurance Industry

    Benefits of Automated Claims Processing in Insurance Industry

    ChatGPT and RPA Join Force to Create a New Tech-Revolution

    ChatGPT and RPA Join Force to Create a New Tech-Revolution

    How does RPA in Accounts Payable Enhance Data Accuracy?

    How does RPA in Accounts Payable Enhance Data Accuracy?

    10 Best Use Cases to Automate using RPA in 2023

    10 Best Use Cases to Automate using RPA in 2023

    How will RPA Improve the Employee Onboarding Process?

    How will RPA Improve the Employee Onboarding Process?

    Key 2023 Banking Automation Trends / Blogs / Perficient

    Key 2023 Banking Automation Trends / Blogs / Perficient

    AI-Driven Omnichannel is the Future of Insurance Industry

    AI-Driven Omnichannel is the Future of Insurance Industry

    Avoid Patient Queues with Automated Query Resolution

    Avoid Patient Queues with Automated Query Resolution

  • Gaming
    God of War Ragnarok had a banner debut week at UK retail

    God of War Ragnarok had a banner debut week at UK retail

    A Little To The Left Review (Switch eShop)

    A Little To The Left Review (Switch eShop)

    Horizon Call of the Mountain will release alongside PlayStation VR2 in February

    Horizon Call of the Mountain will release alongside PlayStation VR2 in February

    Sonic Frontiers has Dreamcast-era jank and pop-in galore - but I can't stop playing it

    Sonic Frontiers has Dreamcast-era jank and pop-in galore – but I can’t stop playing it

    Incredible November Xbox Game Pass addition makes all other games obsolete

    Incredible November Xbox Game Pass addition makes all other games obsolete

    Free Monster Hunter DLC For Sonic Frontiers Now Available On Switch

    Free Monster Hunter DLC For Sonic Frontiers Now Available On Switch

    Somerville review: the most beautiful game I’ve ever played

    Somerville review: the most beautiful game I’ve ever played

    Microsoft Flight Sim boss confirms more crossover content like Halo's Pelican and Top Gun Maverick

    Microsoft Flight Sim boss confirms more crossover content like Halo’s Pelican and Top Gun Maverick

    The Game Awards nominations are in, with God of War Ragnarok up for 10 of them

    The Game Awards nominations are in, with God of War Ragnarok up for 10 of them

  • Investment
    Cognito Therapeutics

    Cognito Therapeutics Raises $73M in Series B Funding

    Adeptia

    Adeptia Raises $65M in Strategic Growth Funding

    Amogy

    Amogy Raises $139M Series B-1 Funding

    RiseKit

    RiseKit Raises $4.75M in Funding

    Mad Rabbit Raises $10M in Series A Funding

    Mad Rabbit Raises $10M in Series A Funding

    healthcare

    Reveal HealthTech Raises $4M in Investment From W Health Ventures

    Kin

    Kin Raises Additional $15M; Series D Round Upsized to $109M

    BitKeep

    BitKeep Raises US$30M From Bitget

    Backslash Security

    Backslash Security Raises $8M in Funding

  • More
    • Data analytics
    • Apps
    • No Code
    • Cloud
    • Quantum Computing
    • Security
    • AR & VR
    • Esports
    • IOT
    • Smart Home
    • Smart City
    • Crypto Currency
    • Blockchain
    • Reviews
    • Video
No Result
View All Result
AI EXPRESS - Hot Deal 4 VCs instabooks.co
No Result
View All Result
Home Security

Log4j vulnerabilities, malware strains multiply; major attack disclosed

seprameen by seprameen
December 22, 2021
in Security
0
Log4j vulnerabilities, malware strains multiply; major attack disclosed
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

Hear from CIOs, CTOs, and different C-level and senior execs on knowledge and AI methods on the Way forward for Work Summit this January 12, 2022. Be taught extra


As cybersecurity groups grapple with having to doubtlessly patch their programs for a 3rd time in opposition to Apache Log4j vulnerabilities, further malware strains exploiting the issues and an assault in opposition to a European army physique have come to gentle.

Safety agency Examine Level reported Monday it has now noticed tried exploits of vulnerabilities within the Log4j logging library on greater than 48% of company networks worldwide, up from 44% final Tuesday.

On Monday, the protection ministry in Belgium disclosed {that a} portion of its community was shut down within the wake of a cyber assault that occurred final Thursday. A spokesperson for the ministry instructed a Belgian newspaper, De Standaard, that the assault had resulted from an exploitation of the vulnerability in Log4j. VentureBeat has reached out to a protection ministry spokesperson for remark.

The report didn’t say whether or not or not the assault concerned ransomware, however a translation of the report signifies that the Belgian protection ministry initiated “quarantine measures” to isolate the “affected areas” of its community.

Further malware strains

In the meantime, the Cryptolaemus safety analysis group on Monday reported that it has verified that Dridex, a malware pressure that targets monetary establishments, has been delivered by way of an exploit of the vulnerability in Log4j. The Dridex payloads have been delivered onto Home windows gadgets, the analysis group stated on Twitter.

Researchers have beforehand reported that they’ve noticed the usage of Mirai and Muhstik botnets to deploy distributed denial of service (DDoS) assaults utilizing the Log4j flaw, in addition to deployment of Kinsing malware for crypto mining. Cisco Talos beforehand reported observing email-based assaults in search of to use the vulnerability.

Akamai Applied sciences stated in a weblog post that together with crypto miners and DDoS bots, “now we have discovered sure aggressive attackers performing an enormous quantity of scans, focusing on Home windows machines” by leveraging the vulnerability in Log4j.

“Attackers have been making an attempt to deploy the infamous ‘netcat’ backdoor, a recognized Home windows privilege escalation device, which is usually used for subsequent lateral motion or gaining privileges to encrypt the disk with ransomware,” the corporate’s safety risk analysis workforce stated.

See also  WithSecure Oyj : New open-source tool connects the dots between suspicious activities during a cyber attack

Researchers at Uptycs stated they’ve noticed assaults utilizing the Log4j vulnerability which have concerned supply of botnet malware (Dofloo, Tsunami/Muhstik, and Mirai), coin miners (Kinsing and XMRig), and an unidentified household of Linux ransomware (which included a ransom observe).

“We are able to count on to see extra malware households, particularly ransomware, leverage this vulnerability and penetrate into victims’ machines within the coming days,” Uptycs researchers stated within the post Monday.

Ransomware risk

On the time of this writing, there was no public disclosure of a profitable ransomware breach that exploited the vulnerability in Log4j, although plenty of ransomware supply makes an attempt utilizing the flaw have been noticed.

Researchers report having seen the tried supply a brand new household of ransomware, Khonsari, in addition to an older ransomware household, TellYouThePass, in reference to the Log4j vulnerability.

Researchers at Microsoft have additionally noticed actions by suspected entry brokers — seeking to set up a backdoor in company networks that may later be offered to ransomware operators — whereas Log4j exploits by ransomware gang Conti have been observed, as nicely.

Notably, Microsoft and cyber agency Mandiant stated final week that they’ve noticed exercise from nation-state teams — tied to international locations together with China and Iran — in search of to use the Log4j vulnerability. Microsoft stated that an Iranian group referred to as Phosphorus, which has beforehand deployed ransomware, has been seen “buying and making modifications of the Log4j exploit.”

Patching woes

Corporations’ patching efforts have been sophisticated by the vulnerabilities which were found within the first two patches for Log4j over the previous week.

Apache on Friday launched model 2.17 of Log4j — the group’s third patch for vulnerabilities within the open-source software program because the preliminary discovery of a distant code execution (RCE) vulnerability, referred to as Log4Shell, on December 9. Model 2.17 addresses a possible for denial of service (DoS) assaults in model 2.16, which had been launched final Tuesday. The severity for the vulnerability is rated as “excessive,” and the bug was independently discovered by a number of people, together with researchers at Akamai and at Development Micro.

See also  Need to detect open source Java vulnerabilities grows, Azul releases tool designed to help

Model 2.16, in flip, had mounted a problem with the model 2.15 patch for Log4Shell that didn’t fully handle the RCE problem in some configurations.

Moreover, a discovery by cybersecurity agency Blumira final week suggests there could also be a further assault vector within the Log4j flaw, whereby not simply susceptible servers, but in addition people looking the net from a machine with unpatched Log4j software program on it, is likely to be susceptible. (“At this level, there isn’t a proof of lively exploitation,” Blumira stated.)

Widespread vulnerability

Many functions and providers written in Java are doubtlessly susceptible because of the flaws in Log4j previous to model 2.17. The RCE flaws can allow distant execution of code by unauthenticated customers.

Together with enterprise merchandise from main distributors together with Cisco, VMware, and Pink Hat, the vulnerabilities in Log4j have an effect on many cloud providers. Analysis from Wiz offered to VentureBeat means that 93% of all cloud environments have been in danger from the vulnerabilities, although an estimated 45% of susceptible cloud sources have been patched at this level.

Up to now, there may be nonetheless no indicator on whether or not the extensively felt ransomware assault in opposition to Kronos Personal Cloud had any connection to the Log4j vulnerability or not. The father or mother firm of the enterprise, Final Kronos Group (UKG), stated in its newest update Sunday that the query of whether or not Log4j was an element continues to be below investigation — although the corporate has famous that it did shortly start patching for the vulnerability.

Nonetheless, the chance of upcoming ransomware assaults that hint again to the Log4j vulnerabilities is excessive, in line with researchers.

“If you’re a ransomware affiliate or operator proper now, you all of the sudden have entry to all these new programs,” stated Sean Gallagher, a senior risk researcher at Sophos Labs, in an interview with VentureBeat on Friday. “You’ve received extra work in your fingers than you realize what to do with proper now.”



Source link

Tags: attackdisclosedLog4jmajormalwaremultiplystrainsVulnerabilities
Previous Post

VisionX v5.6: The future looks cloudy and bright

Next Post

Hyperscience Raises $100M in Growth Equity Funding

seprameen

seprameen

Next Post
Hyperscience

Hyperscience Raises $100M in Growth Equity Funding

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Newsletter

Popular Stories

  • Man upset using a Windows 10 laptop

    Microsoft’s blunders with new Windows 10 update are causing serious headaches

    0 shares
    Share 0 Tweet 0
  • Preterm babies do not habituate to repeated pain like other babies do

    0 shares
    Share 0 Tweet 0
  • Children’s mental health declines as a result of mothers forced to find job

    0 shares
    Share 0 Tweet 0
  • Borgata Casino in Atlantic City Unveils a $55 Million Remodel and Rebranding of Its Hotel Tower

    0 shares
    Share 0 Tweet 0
  • Microsoft lays off AI ethics team

    0 shares
    Share 0 Tweet 0

Security Jobs

View 115 Security Jobs at Tesla

View 165 Security Jobs at Nvidia

View 105 Security Jobs at Google

View 135 Security Jobs at Amamzon

View 131 Security Jobs at IBM

View 95 Security Jobs at Microsoft

View 205 Security Jobs at Meta

View 192 Security Jobs at Intel

Accounting and Finance Hub

Raised Seed, Series A, B, C Funding Round

Get a Free Insurance Quote

Try Our Accounting Service

AI EXPRESS – Hot Deal 4 VCs instabooks.co

AI EXPRESS is a news site that covers the latest developments in Artificial Intelligence, Data Analytics, ML & DL, Algorithms, RPA, NLP, Robotics, Smart Homes & Cities, Cloud & Quantum Computing, AR & VR and Blockchains

Categories

  • AI
  • Ai videos
  • Apps
  • AR & VR
  • Blockchain
  • Cloud
  • Computer Vision
  • Crypto Currency
  • Data analytics
  • Esports
  • Gaming
  • Gaming Videos
  • Investment
  • IOT
  • Iot Videos
  • Low Code No Code
  • Machine Learning
  • NLP
  • Quantum Computing
  • Robotics
  • Robotics Videos
  • RPA
  • Security
  • Smart City
  • Smart Home

Quick Links

  • Reviews
  • Deals
  • Best
  • AI Jobs
  • AI Events
  • AI Directory
  • Industries

© 2021 Aiexpress.io - All rights reserved.

  • Contact
  • Privacy Policy
  • Terms & Conditions

No Result
View All Result
  • AI
  • ML
  • NLP
  • Vision
  • Robotics
  • RPA
  • Gaming
  • Investment
  • More
    • Data analytics
    • Apps
    • No Code
    • Cloud
    • Quantum Computing
    • Security
    • AR & VR
    • Esports
    • IOT
    • Smart Home
    • Smart City
    • Crypto Currency
    • Blockchain
    • Reviews
    • Video

© 2021 Aiexpress.io - All rights reserved.