Hackers pocketed up to $155,000 by inserting a backdoor into a code library used by developers of smart contract apps with cryptocurrency Solana. The supply-chain attack targeted solana-web3.js used by decentralized apps for the Solana blockchain. Developers are urged to upgrade to the latest version and rotate suspect authority keys if they may have been compromised.
MikroTik Botnet Exploits SPF Misconfigurations to Spread Malware
A botnet exploited vulnerabilities in SPF DNS record configurations, compromising 13,000 MikroTik devices and spoofing around 20,000 web domains to spread malware. The result was