Comcast delayed up to nine days patching a high-severity network flaw, enabling hackers to steal sensitive data from 36 million Xfinity clients. Information taken included usernames and hashed passwords, contact information and potentially answers to security questions. Referred to as “Citrix Bleed”, this vulnerability has been actively exploited since August. Comcast is still determining what data was stolen and has not yet received any ransom demands. All Xfinity customers have been asked to reset their passwords.
Botnets leverage decade-old D-Link vulnerabilities in new attack campaigns
A new report from FortiGuard Labs has revealed the activities of two botnets, FICORA and CAPSAICIN, exploiting vulnerabilities in legacy D-Link devices. The report stresses