A Sydney resident was sentenced to 15 months in prison and 300 hours of community…
Let me remind you that we also wrote that The Developers of the Nomad Cryptocurrency Bridge Ask the Hackers to Return the Money and… They Return.
According to a General Bytes security bulletin published on August 18, 2022, attacks on ATMs were carried out using a 0-day vulnerability in the company’s CAS server.
General Bytes experts believe that the attackers scanned the Internet looking for servers with the open TCP ports 7777 or 443, including servers hosted by Digital Ocean and General Bytes’ own cloud service.
The hackers then exploited the vulnerability to add a default admin user named “gb” to the system and change the settings for buying and selling cryptocurrencies, as well as the invalid payment address setting, by injecting their own wallet address into the system. As a result, any cryptocurrency received by CAS fell into the hands of hackers.
Now, General Bytes representatives are warning customers not to use cryptocurrency ATMs until patches 20220531.38 and 20220725.22 are installed on them. The company also published a detailed list of actions that must be performed on the devices before they are put into operation again. Among other things, it is recommended to change firewall settings so that only authorized IP addresses can access the CAS admin interface.
At the same time, it is not clear from the company’s message how many servers were compromised, and how much cryptocurrency was stolen from users.
Streamingsafevpn.com is a site that tries to force you into subscribing to its browser notifications…
Psegeevalrat.net is a site that tries to trick you into subscribing to its browser notifications…
Thi-tl-310-a.buzz is a site that tries to force you into clik to its browser notifications…
Toreffirmading.com is a domain that tries to force you into subscribing to its browser notifications…
News-xboveho.site is a domain that tries to force you into subscribing to its browser notifications…
Glayingly.com is a site that tries to trick you into subscribing to its browser notifications…