Tag Archive for: VMware

Wyze Cameras Have A Three Year Old Flaw – ThreatWire



State-Sponsored Iranian Hackers Deploy Log4j Security Flaw to Infect Unpatched VMware Users With Ransomware


The Log4j vulnerability once again appeared in compromised systems after the state-sponsored hackers from Iran reportedly attacked the VMware users. 

According to cybersecurity analysts, the notorious group behind this attack is TunnelVision.

TunnelVision Exploits Log4J Flaw 

State-Sponsored Iranian Hackers Deploy Log4j Security Flaw to Infect Unpatched VMware Users With Ransomware

(Photo : Mati Mango from Pexels)
Cybersecurity researchers said that the Iranian group of hackers attacked the VMware servers in the latest Log4j security exploit.

According to a comprehensive report by Sentinel Labs on Thursday, Feb. 17, the hackers became more popular when they hit Java-based logging utility Log4j. 

Since then, they managed to gain access to thousands of apps by relying on remote code execution. During its peak time, it has become one of the most dreaded exploits that occurred on the internet. Experts believed that it would continue to haunt the users in the next few years.

Currently, the controversial group named TunnelVision focused on infecting VMware Horizon. Windows, Linux, and macOS users can run this virtualization product on desktops.

According to Yair Rigevsky and Amitai Ben Shushan Ehrlich from Sentinel One, the Iranian cybercriminals have been active in compromising VMware by deploying backdoors and collecting sensitive information from the victims.

On top of that, they also inject PowerShell commands, as well as create backdoor users. The security flaw started with the Log4j exploit wherein they gain commands through the PS reverse shells thanks to the Tomcat process.

Usually, VMware makes use of Apache Tomcat for the deployment of web applications in Java. From this server, the TunnelVision hackers were able to remotely control the networks.

Related Article: [BREAKING] Iranian Hackers ‘Tutorial’ Video of ‘How-to-Hack’ Gmail or Yahoo Accounts Gets Leaked!

What Iranian Hackers Do After Installing PowerShell

According to another report by Ars Technica, here’s what the TunnelVision group does after finishing the setup.

  • Makes a backdoor user and include it in the network admin group.

  • Conduct execution of reconnaissance commands.

  • Utilizes ProcDump, comsvcs MiniDump, and SAM hive dumps for data collection.

  • Install Ngrok…

Source…

Global Mobile Device Security Market 2021: SWOT Analysis of Key Driving Factors for Growing CAGR Value | Top Brands: Symantec, TrendMicro, VMWare, Airwatch, TrustGo, Sophos, McAfee, AT&T, ZoneAlarm…


Reports Globe has released a new research study on the Global Mobile Device Security Market 2021 by manufacturer, region, type and application, planned for 2026, which promises a comprehensive review of the market, clarifying past experiences and trends. Based on these past experiences, it offers prediction of the future by taking into account other factors that affect the growth rate. The report covers the crucial parts of the global Mobile Device Security market and such factors as driving forces, current trends, monitoring scenario and technological growth. The research document presents an in-depth assessment of the market. It shows detailed observation of various aspects, including growth rate, technological progress and various strategies implemented by major players in the current market.

It also focuses more on current statistics on the global Mobile Device Security market. In addition, this research report presents a history of the global market along with future forecasts. A team of experts focuses on examining Mobile Device Security industry conditions, supply and demand analysis, and the productivity of leading companies. Different analysis methods have been used to study data from various reliable sources such as websites, media publications, press releases, etc.

Get FREE Sample copy of this Report with Graphs and Charts at: https://reportsglobe.com/download-sample/?rid=299939

The segmentation chapters enable readers to understand aspects of the market such as its products, available technology and applications. These chapters are written to describe their development over the years and the course they are likely to take in the coming years. The research report also provides detailed information on new trends that may define the development of these segments in the coming years.

Mobile Device Security Market Segmentation:

Mobile Device Security Market, By Application (2016-2027)

  • Government
  • BFSI
  • Retail & Consumer Goods
  • Telecommunication
  • Manufacturing
  • Others

Mobile Device Security Market, By Product (2016-2027)

  • Android
  • Blackberry
  • iOS
  • Windows
  • Others

Major Players Operating in the Mobile Device Security…

Source…

Junos Connect Video Series – Junos Pulse Mobile Security Suite, Junos Space Network Activate