Access control vulnerability found in some Dahua product

Wed, 17 Aug 2022 21:34:00
0 minutes, 29 seconds
Dan

Cybersecurity is an on-going challenge for all IoT connected device manufacturers and users, as it is for all digital products and services. Dahua Technology is committed to developing and maintaining state-of-the-art cybersecurity practices, including through our product design process and our cust...

Xiaomi Phones with MediaTek Chips Found Vulnerable to Forged Payments

Wed, 17 Aug 2022 21:13:00
0 minutes, 52 seconds
Dan

Security flaws have been identified in Xiaomi Redmi Note 9T and Redmi Note 11 models, which could be exploited to disable the mobile payment mechanism and even forge transactions via a rogue Android app installed on the devices.

Check Point said it found the flaws in devices powered by MediaTek ch...

Experts Uncover New 'CosmicStrand' UEFI Firmware Rootkit Used by Chinese Hackers

"The rootkit is located in the firmware images of Gigabyte or ASUS motherboards, and we noticed that all these images are related to designs using the H81 chipset," Kaspersky researchers said in a new report published today. "This suggests that a common vulnerability may exist that allowed the attac...

Critical Chipset Bugs Open Millions of Android Devices to Remote Spying

Wed, 04 May 2022 19:36:00
0 minutes, 19 seconds
Dan

Three security vulnerabilities have been disclosed in the audio decoders of Qualcomm and MediaTek chips that, if left unresolved, could allow an adversary to remotely gain access to media and audio conversations from affected mobile devices. According to Israeli cybersecurity company Check Point, th...

New Lenovo UEFI Firmware Vulnerabilities Affect Millions of Laptops

Wed, 04 May 2022 19:34:00
0 minutes, 16 seconds
Dan

Three high-impact Unified Extensible Firmware Interface (UEFI) security vulnerabilities have been discovered impacting various Lenovo consumer laptop models, enabling malicious actors to deploy and execute firmware implants on the affected devices. Tracked as CVE-2021-3970, CVE-2021-3971, and CVE-20...