+44 (0)203 88 020 88

News

RCE bugs fixed in patch Tuesday for September

The September Patch Tuesday release from Microsoft included 18 critical fixes and 79 in total.  The fixes include several Remote Code Execution vulnerabilities: RDP client-side remote code execution vulnerabilities Four remote code execution vulnerabilities were fixed in the Remote Desktop Services client.  If a user can be tricked into connecting to a malicious RDP server […]

RCE bugs fixed in patch Tuesday for September Read More »

IoT devices increasingly used as corporate attack vector

Microsoft details IoT devices used in corporate breaches in new report. Microsoft’s Security Response Centre has recently published a report listing several instances they have analysed where IoT devices were used as a beach head in attacks against corporate networks. There are more IoT (Internet of Things) devices currently in use than the total number of mobile

IoT devices increasingly used as corporate attack vector Read More »

Qualcomm powered Android phones vulnerable to RCE

At Black Hat 2019 Tencent reveals QualPwn vulnerability which could allow over the air RCE on Android devices using Qualcomm chips The vulnerabilities, known as QualPwn, can be chained together to first compromise the WiFi controller and then overwrite a portion of the Android Kernel. CVE-2019-10539: is a buffer-overflow vulnerability in Qualcomm’s Wi-Fi controller firmware.

Qualcomm powered Android phones vulnerable to RCE Read More »

600 failed login attempts per hour for public RDP servers

Recent research from Sophos highlights your public RDP server as the primary attack vector against your data centre. During April and May 2019, Sophos deployed 10 standard out-of-the-box configured Windows 2019 servers into AWS data centres around the world.  By default, Windows 2019 has RDP enabled.  They configured each server with uncrackably long passwords and

600 failed login attempts per hour for public RDP servers Read More »

Scroll to Top