Glupteba Botnet Evades Detection with Undocumented UEFI Bootkit

The Glupteba botnet has been found to incorporate a previously undocumented Unified Extensible Firmware Interface (UEFI) bootkit feature, adding another layer of sophistication and stealth to the malware. “This bootkit can intervene and control the [operating system] boot process, enabling Glupteba to hide itself and create a stealthy persistence that can be extremely difficult to … Read more

The Android Predator Spyware

Android Spyware Researchers Uncover New Data Theft Capabilities Phone-hugging code can record calls, read messages, track geolocation, access camera, other snooping and more. Security researchers have detailed the inner workings of the commercial Android spyware called Predator, which is marketed by the Israeli company Intellexa (previously Cytrox). Predator was first documented by Google’s Threat Analysis … Read more

Mirai malware botnet is actively exploiting a TP-Link Archer A21 (AX1800) WiFi router vulnerability

The flaw was disclosed to TP-Link in January 2023, with TP-Link releasing a fix last month in a new firmware update. The Mirai malware botnet is actively exploiting a TP-Link Archer A21 (AX1800) WiFi router vulnerability tracked as CVE-2023-1389 to incorporate devices into DDoS (distributed denial of service) swarms. Researchers first abused the flaw during the Pwn2Own Toronto hacking event in … Read more