Yesterday afternoon, Ars Technica published a story reporting two possible logs of Heartbleed attacks occurring in the wild, months before Monday's public disclosure of the vulnerability. It would be very bad news if these stories were true, indicating that blackhats and/or intelligence agencies may have had a long period when they knew about the attack and could use it at their leisure.. In response to the story, EFF called for further evidence of Heartbleed attacks in the wild prior to Monday. The first thing we learned was that the SeaCat report was a possible false positive; the pattern in their logs looks like it could be caused by ErrataSec's masscan software, and indeed one of the source IPs was ErrataSec.. Investigations suggest possible vulnerabilities exploited in early instances of Spectre, prompting the EFF to examine these developments further.. Heartbleed Exploitation, Cyber Attack Reports, Security Investigations. . LinuxSecurity.com Team
This month. Around 15 new exploits are scheduled to be discussed, according to conference organisers. Last year, Cisco issued a lawsuit against the organisers after one of its former employees demonstrated a serious security hole in its routing technology. . Approximately 20 fresh vulnerabilities are set to be unveiled at Def Con 2023, shedding light on severe security issues examined by specialists.. Black Hat Conference, Exploit Discovery, Cisco Security, Security Flaws. . Brittany Day
Get the latest Linux and open source security news straight to your inbox.