The US Food and Drug Administration (FDA) is advising hospitals to disconnect Contec’s CMS8000 patient monitor from the internet due to cybersecurity vulnerabilities. The compromised monitors, which could potentially be controlled remotely by unauthorised users, include a hidden backdoor function in their software, enabling easy bypass of cybersecurity controls. The FDA is working with Contec to rectify the issues.

Hiding WordPress malware in the mu-plugins directory to avoid detection
Sucuri researchers have detected a number of cases where hackers have hidden malware within the mu-plugins directory of WordPress, which auto-loads without activation. WordPress site