Dell, EMC, Dell Technologies, Cisco,

Showing posts with label Hack. Show all posts
Showing posts with label Hack. Show all posts

Monday, June 27, 2016

Lenovo Solution Center portal patched to shutter hacker god mode hole

@Lenovo has patched a dangerous hole in its rebuilt Solution Center that could allow attackers to gain god mode access on hacked machines and to kill running processes including anti-virus.

The pre-installed OEM software helps users update #Lenovo tools and manage features like firewalls.

Attackers with existing but unprivileged hacked access can gain privilege escalation to run tasks with local system rights.

Trustwave lead researcher @MartinRakhmanov quietly reported the flaws (CVE-2016-5249 - CVE-2016-5248) to Lenovo which issued a patch.

"This could be used in mounting further attacks by disabling anti-virus or some other protection mechanisms for instance," Rakhmanov says.

"Specifically, we at @Trustwave SpiderLabs'found that the new version, even though significantly reworked, still allowed 

http://www.theregister.co.uk/2016/06/27/lenovo_patch_solution_center/

Thursday, October 15, 2015

FBI teams up with hackers to bust bank robbing botnet

U.S. and U.K. police have managed to stop a massive hacking operation that infected computers worldwide, stealing at least $10 million from the U.S. alone. #Dell #SecureWorks was the first to discover the bank-credential-stealing computer program back in 2010.


Source:CNN Money