Remove 02
article thumbnail

EnemyBot malware adds new exploits to target CMS servers and Android devices

Security Affairs

It uses a list of hardcoded username/password combinations to login into devices in the attempt to access systems using weak or default credentials. LFI CVE-2018-16763 Fuel CMS 1.4.1 LFI CVE-2018-16763 Fuel CMS 1.4.1 LFI CVE-2018-16763 Fuel CMS 1.4.1 ” states the report published by AT&T Alien Labs.

CMS 138
article thumbnail

Hackers exploit 3-years old flaw to wipe Western Digital devices

Security Affairs

“When I couldn’t access any of the 4 Network drives I created, I went to Network and double clicked on the MyBookLive Icon, which took me to the GUI page. WD is investigating the mysterious wave of attacks launched and speculates that attackers have been exploiting a known vulnerability, tracked as CVE-2018-18472 , to wipe the devices.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

CISA adds WatchGuard flaw to its Known Exploited Vulnerabilities Catalog

Security Affairs

A remote attacker with unprivileged credentials can exploit the CVE-2022-23176 vulnerability in WatchGuard Firebox and XTM appliances to access the system with a privileged management session via exposed management access. The vulnerabilities added to the catalog have to be addressed by federal agencies by May 02, 2022.

IT 78
article thumbnail

Feminist leadership, libraries and Covid-19

CILIP

The 2018/2019 cohort was comprised of people from very varied cultural organisations, practices and perspectives; I was the sole Fellow from a library. 1 The Fellowship took place over seven months starting in September 2018. Published: 8 March 2021. go-to people?, References. Each Fellow was allocated with a mentor.