Archive
What Was CryptoLocker? The Ransomware That Gave...
CryptoLocker appeared on 5 September 2013 and did what almost nothing before it had managed: it encrypted files in a way no researcher could undo, and then, if you paid,...
What Was CryptoLocker? The Ransomware That Gave...
CryptoLocker appeared on 5 September 2013 and did what almost nothing before it had managed: it encrypted files in a way no researcher could undo, and then, if you paid,...
What Was Shellshock? The Bug Bash Carried for T...
On 24 September 2014 it became public that bash would execute commands appended to an exported shell function, and that a web server could be handed one in an HTTP...
What Was Shellshock? The Bug Bash Carried for T...
On 24 September 2014 it became public that bash would execute commands appended to an exported shell function, and that a web server could be handed one in an HTTP...
What Was MOVEit? The Breach That Reached People...
Over the Memorial Day weekend in 2023, Cl0p began working through a SQL injection flaw in MOVEit Transfer. More than 2,700 organisations and 90 million people ended up in the...
What Was MOVEit? The Breach That Reached People...
Over the Memorial Day weekend in 2023, Cl0p began working through a SQL injection flaw in MOVEit Transfer. More than 2,700 organisations and 90 million people ended up in the...
What Was SUNBURST? The Backdoor Nobody Committed
Between March and June 2020, roughly 18,000 SolarWinds customers installed an Orion update carrying a backdoor that no developer had ever written into the source. It was inserted while the...
What Was SUNBURST? The Backdoor Nobody Committed
Between March and June 2020, roughly 18,000 SolarWinds customers installed an Orion update carrying a backdoor that no developer had ever written into the source. It was inserted while the...
What Was the XZ Utils Backdoor? Three Years of ...
A backdoor reached the release tarballs of a compression library that most Linux systems depend on. It was never in the git repository. It was found because one engineer, benchmarking...
What Was the XZ Utils Backdoor? Three Years of ...
A backdoor reached the release tarballs of a compression library that most Linux systems depend on. It was never in the git repository. It was found because one engineer, benchmarking...
What Was Flame? The Malware That Did Original C...
Flame spread across networks by impersonating Windows Update, which requires a valid Microsoft signature. It obtained one using an MD5 chosen-prefix collision variant that had not been published anywhere. Someone...
What Was Flame? The Malware That Did Original C...
Flame spread across networks by impersonating Windows Update, which requires a valid Microsoft signature. It obtained one using an MD5 chosen-prefix collision variant that had not been published anywhere. Someone...