• About
  • Advertise
  • Careers
  • Contact
Buy us coffee
Thursday, October 23, 2025
  • Login
No Result
View All Result
NEWSLETTER
Security News Hub
  • Home
  • World
  • Politics
  • Business
  • Fact-Check
  • Tech

    Trending Tags

    • Sillicon Valley
    • Climate Change
    • Election Results
    • Flat Earth
    • Golden Globes
    • MotoGP 2017
    • Mr. Robot
  • Infotainment

    How Jennifer Aniston ‘Struggles With Depression’ Inspired New Album

    20+ Pics That Prove Jennifer Is a Timeless Beauty

    Hidden Ways To Save Money That You Might Be Missing

    The Best Street Style From Paris Fashion Week Spring

    Fashionable Summer Accessories to Dress Up Your Travel Look

    Business Casual: The Definitive Guide for Women To Be Stylish At Work

  • Lifestyle
    • All
    • Travel

    BREAKING NEW: I WANT TO BE THE NEXT NIGERIAN PRESIDENT BY 2023 – PETER OBI

    How Fashion Insiders Are Dressing for New York Fashion Week

    How Fashion Insiders Are Dressing for New York Fashion Week

    18 Top Fall Fashion Trends from New York Fashion

    Medicaid Expansion Improves Hypertension and Diabetes Control

    10 Places You Can’t Miss If It’s Your First Time in European

    Long-Term Care Needs Among Retirees Varies Widely, New Research Shows

    Trending Tags

    • Golden Globes
    • Mr. Robot
    • MotoGP 2017
    • Climate Change
    • Flat Earth
  • Home
  • World
  • Politics
  • Business
  • Fact-Check
  • Tech

    Trending Tags

    • Sillicon Valley
    • Climate Change
    • Election Results
    • Flat Earth
    • Golden Globes
    • MotoGP 2017
    • Mr. Robot
  • Infotainment

    How Jennifer Aniston ‘Struggles With Depression’ Inspired New Album

    20+ Pics That Prove Jennifer Is a Timeless Beauty

    Hidden Ways To Save Money That You Might Be Missing

    The Best Street Style From Paris Fashion Week Spring

    Fashionable Summer Accessories to Dress Up Your Travel Look

    Business Casual: The Definitive Guide for Women To Be Stylish At Work

  • Lifestyle
    • All
    • Travel

    BREAKING NEW: I WANT TO BE THE NEXT NIGERIAN PRESIDENT BY 2023 – PETER OBI

    How Fashion Insiders Are Dressing for New York Fashion Week

    How Fashion Insiders Are Dressing for New York Fashion Week

    18 Top Fall Fashion Trends from New York Fashion

    Medicaid Expansion Improves Hypertension and Diabetes Control

    10 Places You Can’t Miss If It’s Your First Time in European

    Long-Term Care Needs Among Retirees Varies Widely, New Research Shows

    Trending Tags

    • Golden Globes
    • Mr. Robot
    • MotoGP 2017
    • Climate Change
    • Flat Earth
No Result
View All Result
Security News Hub
No Result
View All Result
Home Cyber space

BREAKING: Six CISCO Backend Servers Hacked

by Admin
June 1, 2020
in Cyber space
0 0
0
0
SHARES
0
VIEWS
Share on FacebookShare on Twitter

Cyber attackers have taken advantage of flaws that exist in the open-source Saltstack Management framework used by Cisco in their network-tooling products. The vulnerable salt-master service currently runs on two Cisco products; Cisco Modeling Labs Corporate Edition (CML) and Cisco Virtual Internet Routing Lab Personal Edition (VIRL-PE). The former gives users a virtual sandbox environment to design and configure network topologies; while the latter is for designing, configuring, and operating networks using versions of Cisco’s network operating systems.

The flaws in the latter made room for the exploitation by the hackers, which resulted in the compromise of six VIRL-PE backend servers, namely, us-1.virl.info, us-2.virl.info; us-3.virl.info, us-4.virl.info; us-5.virl.info, us-6.virl.info.

If the above products enable its salt-master service; the exploitability of the product depends on how the product has been deployed.

A full list of the impact and recommended action for each deployment option, for each Cisco software release, can be found on Cisco’s alert.

F-secure researchers predicted about an imminent attack when they discovered the flaw after the release of patches by SaltStack. SaltStack released patches for the flaw in release 3000.2, on April 30. However, a Preliminary scan carried out revealed the presence of more than 6,000 potentially vulnerable Salt instances exposed to the public.

It seems like the predictions are coming true as a series of hackings have started to take place. For instance, at the beginning of May, hackers were able to launch a crypto-jacking attack using the Ghost publishing servers. Also,they exploited the vulnerabilities in SaltStack used by the platform, which led to widespread outages.

According to Cisco’s Thursday alert, “Cisco infrastructure maintains the salt-master servers used with Cisco VIRL-PE. The upgrade of the servers was on May 7, 2020. Cisco identified that the Cisco-maintained salt-master servers which are servicing Cisco VIRL-PE release 1.2 and 1.3 were compromised.”

Cisco also said that “to be exploited, the salt-master service must be reachable on TCP ports 4505 and 4506.” The company added that administrators could check their configured Cisco salt-master server by navigating to VIRL Server > Salt Configuration and Status.

They (Cisco) continue to strongly recommend that customers upgrade to a fixed software release to remediate these vulnerabilities.

Source: Fredwave who’s an OSINT Analysts and Certified Network Security Specialist #CNSS 
Tags: Ciscocyber securitySaltstack
Admin

Admin

Recommended

Corona Virus: University of Virginia disenrolls 238 students for not complying with university’s vaccine mandate

4 years ago

Kebbi Police command dismisses Fake Intelligence Report’ On Bandits movement

3 years ago

Popular News

Plugin Install : Popular Post Widget need JNews - View Counter to be installed

Connect with us

Defence & Security New Hub

Security News Hub

We are Africa's First Independent Defence and Security News Hub that provides you with the latest, exclusive and data-driven analytical news within the Defence community
SUBSCRIBE

Recent posts

  • FACT CHECK: Viral Video Claiming ISWAP Has Entered Kogi State Is Not From Nigeria
  • Sanwo-Olu, Wike, Uzodimma, Buratai Among Witnesses Listed by Nnamdi Kanu in Terrorism Trial
  • Study Reveals That One in Every Five Nigerians Is Mentally Unstable
  • Army Loses Commanding Officer, Others as Troops Foil Terrorist Attack in Borno
  • Nigeria Police Fire Tear Gas and Arrest Dozens as Protesters Demand Release of Separatist Leader

Nigerian President Bola Ahmed Tinubu has approved the finalization of a new $1 billion deal to boost the Nigeria's defense industry. The deal, which was signed with the Managing Arm of the Military-Industrial Complex of the Indian government, will see the Defense Industries… pic.twitter.com/ep4LgoIS4c

— DefenceTimesNG (@DefenceTimesNG1) September 8, 2023
  • About
  • Advertise
  • Careers
  • Contact

© 2025 DefenceTimesNG - Proudly designed with love from DefenceTimesNG

No Result
View All Result
  • Home
  • Politics
  • World
  • Business
  • Science
  • National
  • Entertainment
  • Lifestyle
  • Travel
  • Tech

© 2025 DefenceTimesNG - Proudly designed with love from DefenceTimesNG

Welcome Back!

OR

Login to your account below

Forgotten Password?

Create New Account!

Fill the forms bellow to register

All fields are required. Log In

Retrieve your password

Please enter your username or email address to reset your password.

Log In

Add New Playlist