Over 13,000 iSCSI storage clusters are currently accessible via the internet after their respective owners forgot to enable authentication. . This misconfiguration has the risk of causing serious harm to devices' owners, as cyber-criminal groups could access these internet-accessible hard drives (storage disk arrays and NAS devices) to replace legitimate files with malware, insert backdoors inside backups, or steal company information stored on the unprotected devices. The link for this article located at ZDNet is no longer available. . More than 12,000 open SMB file shares can be found on the internet, posing a threat of unapproved access and possible information leaks.. iSCSI Access Risk, Storage Cluster Security, Internet Vulnerability. . LinuxSecurity.com Team
According to a new report from Menlo Security, one out of three of the top million websites are either vulnerable to hacking or already hacked. For example, attackers used the Forbes.com website last month for a quick watering hole attack. . According to Dallas-based research firm iSIGHT Partners, Inc., the attack only lasted a couple of days in late 2014, used a zero-day Adobe Flash vulnerability, and was linked to a Chinese cyber espionage group. "We saw the Forbes.com hack, and that there were quite a few other sites being hacked, delivering malware, targeting innocent users," said Menlo Security's CTO Kowsik Guruswamy. "We were curious how that malware got there in the first place." The link for this article located at CSO Online is no longer available. . Menlo Security reveals concerning insights regarding website weaknesses along with cases of cyber intrusions and malicious software distribution.. Website Security Issues,Cybersecurity Threats,Malware Attacks,Cyber Exposure. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.