Tag

Barracuda Networks

All articles tagged with #barracuda networks

cybersecurity2 years ago

China-linked hackers exploit Barracuda ESG zero-day vulnerability to breach public and private networks.

Chinese state-backed hackers used a security vulnerability in Barracuda Networks' Email Security Gateway to breach hundreds of public and private sector organizations globally, including nearly a third of government agencies, according to cybersecurity firm Mandiant. The hackers sent emails containing malicious file attachments to gain access to targeted organizations’ devices and data. Mandiant said the majority of the impact was in the Americas, reflecting the geography of Barracuda's customer base. Barracuda is providing replacement appliances to affected customers at no cost.

cybersecurity2 years ago

Barracuda Urges Immediate Replacement of Vulnerable Email Security Appliances.

Barracuda Networks urged its Email Security Gateway (ESG) customers to replace affected appliances instead of patching them after discovering a zero-day vulnerability that allowed attackers persistent backdoor access to the devices. The company said the malware was identified on a subset of appliances, and evidence of data exfiltration was identified on some systems. Experts suggest that the malware was able to corrupt the underlying firmware that powers the ESG devices in some irreparable way, indicating a state actor. Barracuda advises customers to rotate any credentials connected to the appliance(s) and check for signs of compromise dating back to at least October 2022.