Urgent.News

What's breaking now, across thousands of outlets.

Tech

Newly SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode

An independent malware researcher has documented a previously unreported Windows backdoor, dubbed SLEEPWALKER, that stays inert in memory until a specifically crafted network packet reaches the machine and then runs commands written in a 23-instruction language of its own design. The sample is an unsigned 64-bit Windows dynamic-link library (DLL) of 59,904 bytes, built to be side-loaded into&

Newly SLEEPWALKER Backdoor Waits for One Crafted Packet, Then Runs Its Own Bytecode

We haven't written up this one. The Hacker News has the full story — the link below goes straight to it.

Read the original at thehackernews.com →

More in Tech

A Confirm Button Is Not a Coding-Agent Security Boundary

A coding agent asks for permission to modify packages/web/generated/client.ts . The path looks harmless, the proposed diff sounds reasonable, and the user clicks Approve.

  • A confirm button alone does not define system security boundaries.
  • Approval must match execution for true security boundary functionality.
  • Binding approval to specific, invariant facts about the operation is required.

Data Sniffing: Threats to Business and 5 Ways to Defend

Data sniffing, or packet sniffing, is the covert interception and analysis of data as it moves across a network. While some sniffers serve legitimate purposes (for example, network troubleshooting by…

  • Sniffers intercept network data as digital eavesdroppers
  • Packet sniffing captures, reassembles, and analyzes packets
  • Multi-layered defense required: encryption, MFA, network segmentation

More from Wednesday 26 August →