article thumbnail

CDRThief Linux malware steals VoIP metadata from Linux softswitches

Security Affairs

Security experts from ESET discovered a new piece of malware, tracked as CDRThief, that targets the Linux VoIP platform, Linknat VOS2009/3000 softswitches, to steal call data records (CDR) from telephone exchange equipment. “To steal this metadata, the malware queries internal MySQL databases used by the Softswitch.”

Metadata 128
article thumbnail

Why Your VPN May Not Be As Secure As It Claims

Krebs on Security

But researchers at Leviathan Security say they’ve discovered it’s possible to abuse an obscure feature built into the DHCP protocol so that other users on the local network are forced to connect to a rogue DHCP server. VPNs work by creating a virtual network interface that serves as an encrypted tunnel for communications.

IT 275
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

CDRThief Linux malware steals VoIP metadata from Linux softswitches

Security Affairs

Security experts from ESET discovered a new piece of malware, tracked as CDRThief, that targets the Linux VoIP platform, Linknat VOS2009/3000 softswitches, to steal call data records (CDR) from telephone exchange equipment. “To steal this metadata, the malware queries internal MySQL databases used by the Softswitch.”

article thumbnail

MongoDB investigates a cyberattack, customer data exposed

Security Affairs

MongoDB on Saturday announced it is investigating a cyberattack that exposed customer account metadata and contact information. The cyber attack was discovered on December 13, 2023, and led to the exposure of customer account metadata and contact information. We detected suspicious activity on Wednesday (Dec.

Metadata 124
article thumbnail

Data leak at fintech giant Direct Trading Technologies

Security Affairs

Source: Cybernews Users holding the company’s email addresses, potentially the employees, had their passwords exposed in plaintext. Hashed passwords to access user accounts on the DTT trading platform were also leaked. Leaked emails. Some clients had their home addresses, phone numbers, and partial credit card details exposed.

Metadata 123
article thumbnail

wget utility potential leaked password via extended filesystem attributes

Security Affairs

The security researcher Gynvael Coldwind (@voltagex) discovered that the stored attributes can include user usernames and passwords. This includes the cases where the URL has a user/password in it $ getfattr -d -m – test user.xdg.origin.url="[link] — Gynvael Coldwind (@gynvael) December 25, 2018.

Passwords 105
article thumbnail

LastPass Breach

Schneier on Security

Last August, LastPass reported a security breach, saying that no customer information—or passwords—were compromised. These encrypted fields remain secured with 256-bit AES encryption and can only be decrypted with a unique encryption key derived from each user’s master password using our Zero Knowledge architecture.

Passwords 107