Advantech printer driver: heap corruption via Monochrome blit function (DrvRender_x64_ADVANTECH.dll)

Heap corruption in the Advantech TP-3250 printer driver due to 32-bit size arithmetic and unvalidated geometry in a CopyBits-style routine; reliable crash and likely local Privilege Escalation.

Alex Manson

#Advantech has released software updates to address several vulnerabilities in its EKI industrial-grade wireless access points

The most severe vulnerabilities allows an attacker to remotely execute code without authentication

Administrators are advised to patch ASAP

#cybersecurity #vulnerabilitymanagement

https://thehackernews.com/2024/11/over-two-dozen-flaws-identified-in.html

Over Two Dozen Flaws Identified in Advantech Industrial Wi-Fi Access Points – Patch ASAP

Advantech patches critical flaws in industrial Wi-Fi devices enabling remote code execution and persistent access.

The Hacker News
Detectan más de dos docenas de vulnerabilidades en los puntos de acceso Wi-Fi industriales de Advantech - Masterhacks Blog

Investigadores de ciberseguridad detectaron más de 24 vulnerabilidades en los puntos de acceso WiFi industriales de Advantech

Masterhacks Blog
Advantech : brèche sécuritaire incriminant le ransomware Conti ! | SOSOrdi.net

SOSOrdi.net
Conti Gang Hits IoT Chipmaker Advantech with $14M Ransom Demand

The ransomware group has leaked stolen data to add pressure on the company to pay up.

Threatpost - English - Global - threatpost.com
Conti Gang Hits IoT Chipmaker Advantech with $14M Ransom Demand - The ransomware group has leaked stolen data to add pressure on the company to pay up. https://threatpost.com/conti-iot-chip-advantech-ransom-demand/161691/ #$14millionransom #internetofthings #industrialiot #websecurity #cyberattack #ransomware #advantech #malware #conti #iot
Conti Gang Hits IoT Chipmaker Advantech with $14M Ransom Demand

The ransomware group has leaked stolen data to add pressure on the company to pay up.

Threatpost - English - Global - threatpost.com
l+f: 12,5 Millionen US-Dollar Lösegeld inklusive Sicherheitsberatung
l+f: 12,5 Millionen US-Dollar Lösegeld inklusive Sicherheitsberatung
l+f: 12,5 Millionen US-Dollar Lösegeld inklusive Sicherheitsberatung

Eine Ransomware-Gang droht, will aber auch helfen.

Conti ransomware attack demands $14 million from industrial IoT...

The world's largest maker of industrial computers, Taiwan's Advantech, has reportedly been hit by a ransomware attack - with cybercriminals demanding a ransom worth approximately US $14 million for a decryption key, and to prevent the public leaking of... #advantech #advantechransomware #conti

HOTforSecurity
Conti ransomware attack demands $14 million from industrial IoT firm Advantech - The world's largest maker of industrial computers, Taiwan's Advantech, has reportedly been hit by ... https://hotforsecurity.bitdefender.com/blog/conti-ransomware-attack-demands-14-million-from-industrial-iot-firm-advantech-24608.html #ransomware #databreach #guestblog #advantech #dataloss #malware #conti
Conti ransomware attack demands $14 million from industrial IoT...

The world's largest maker of industrial computers, Taiwan's Advantech, has reportedly been hit by a ransomware attack - with cybercriminals demanding a ransom worth approximately US $14 million for a decryption key, and to prevent the public leaking of... #advantech #advantechransomware #conti

HOTforSecurity
Операторы вымогателя Conti потребовали у Advantech $13 млн за расшифровку файлов #IT-компании, #Advantech, #Conti https://www.securitylab.ru/news/514415.php https://twitter.com/SecurityLabnews/status/1332961272338526208/photo/1
Операторы вымогателя Conti потребовали у Advantech $13 млн за расшифровку файлов

Операторы Conti начали публиковать на своем сайте утечек похищенные у Advantech данные.