As predicted, the critical and easily exploitable flaw that affects all versions of BIND, the most widely used DNS software on the Internet, has started being exploited by attackers.
US-CERT is urging administrators of Domain Name System servers to check whether their machines are misconfigured to respond to global Asynchronous Transfer Full Range (AXFR) requests and thus leak potentially sensitive information.
Akamai Technologies released, through the company's Prolexic Security Engineering & Response Team (PLXsert), a new cybersecurity threat advisory that alerts enterprises to a high-risk threat of powerful distributed denial of service (DDoS) attacks from the Spike DDoS toolkit.
When Microsoft seized control of 23 free domain names usually controlled by dynamic DNS service No-IP on Monday, it disrupted malware networks used by cybercriminals to infect victims with NJrat and NJw0rm backdoors, as well as some APT operations.
The websites of antivirus vendors Avira and AVG, as well as that of popular IM service WhatsApp, have been defaced by Palestinian hackers affiliated with Anonymous that go by the name "KDMS Team".
Reading our newsletter every Monday will keep you up-to-date with security news.
Receive a daily digest of the latest security news.