March 21, 2023, 3:05 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

Carl Hurd of Cisco Talos discovered these vulnerabilities.

Cisco Talos recently discovered two vulnerabilities in WellinTech’s KingHistorian industrial control systems data manager.

KingHistorian is a time-series database that allows users to ingest and process large amounts of data from ICS, including built-in statistical analysis.

Talos discovered an information disclosure vulnerability (TALOS-2022-1683/CVE-2022-45124) in the software’s user authentication function. If an adversary could capture an authentication packet, it contains all the necessary information to steal the target user’s username and …

adversary analysis authentication buffer buffer overflow capture cisco cisco talos control control systems cve data database disclosure function ics industrial industrial control industrial control systems information information disclosure kinghistorian large manager overflow packet platform process series software spotlight systems talos vulnerabilities vulnerability vulnerability spotlight vulnerable wellintech

SOC 2 Manager, Audit and Certification

@ Deloitte | US and CA Multiple Locations

Security Operations Manager (f/d/m), 80-100%

@ Alpiq | Lausanne, CH

Project Manager - Cyber Security

@ Quantrics Enterprises Inc. | Philippines

Sr. Principal Application Security Engineer

@ Gen | DEU - Tettnang, Kaplaneiweg

(Senior) Security Architect Car IT/ Threat Modelling / Information Security (m/f/x)

@ Mercedes-Benz Tech Innovation | Ulm

Information System Security Officer

@ ManTech | 200AE - 375 E St SW, Washington, DC