LIVE · cybersecurity feed
Live wire
Zero-Click Grok Chat History Theft: Adversa AI Demonstrates Cryptographic Context InjectionMalware Hijacks Android Car Head UnitsCritical Flaw in NASA/JPL Open-Source Spacecraft Command Software Allowed Unauthenticated Command ExecutionCVE-2026-73570 · U.S. CISA adds Zimbra Collaboration Suite (ZCS) flaw to its Known Exploited Vulnerabilities catalogCVE-2024-3094 · Connecting the Dots: Securing the Overlooked Corners of the Software Development Lifecycle (SDLC) Supply ChainHow an Emerging Industrial Protocol Family Could Put OT at Risk14 Trojanized npm Packages Drop RedC2 4.0 Linux Backdoor With AI-Assisted C2Hundreds of leaked AWS keys give full control over corporate accountsAndroid Car Malware Spreads Through Built-In Updaters for Ad Fraud, Proxy BotnetMalware injected into popular Rust packages to steal developer credentials
vulnerability

Slovakia Warns of Cyber Risks in Road Speed Cameras

Slovakia warns that vulnerable speed cameras could expose vehicle data, enable remote access and provide attackers with a foothold into public networks. Slovakia’s National Security Authority, NBÚ, recently issued a warning about several road speed cameras, calling them a significant cyber threat. The alert is not about someone deleting a speeding ticket. It is about […]

zeroday.news ·

Slovakia's National Security Authority (NBÚ) has issued a warning regarding significant cybersecurity risks associated with several types of road speed cameras, identifying them as potential threats to public networks and sensitive vehicle data. The alert, prompted by a request from the Interior Ministry, focuses on connected devices that collect vehicle information, communicate with other systems, and may feature remote access functionalities not fully controllable by the operator.

The NBÚ's analysis specifically examined a sample of the NERO R-ONE camera system and named three product lines in its warning: NERO R-ONE devices from Cyprus-based SODASUS, Cordon-series speed cameras manufactured by Russia's Simicon, and Cordon-series products distributed by Croatia's NEROline. The authority emphasized that the issues extend beyond simple configuration problems.

Key findings from the security analysis include discrepancies between documented and actual communication settings, ambiguity regarding the true origin of the hardware and software, software versions that did not match declared specifications, and weak security protections. A particular concern highlighted was the presence of pre-configured remote access and product management mechanisms that were not entirely under the customer's control.

Such uncontrolled remote access creates a blind spot in systems that may be integrated into public-sector networks or interact with other operational services. Speed cameras are sophisticated devices that photograph vehicles, record timestamps, process license plate data, store evidence, and transmit information to backend systems used by authorities. They can also connect to mobile networks, roadside equipment, police systems, municipal platforms, or third-party maintenance services.

The NBÚ warned that if these cameras are compromised, attackers could gain unauthorized access to data, alter or delete records, manipulate violation measurements or reporting, or even disable the cameras. Furthermore, if network segmentation is inadequate, a compromised camera could serve as an entry point to other critical systems. The warning aims to alert operators of essential services and other organizations to these serious cybersecurity risks, which could potentially be exploited to disrupt networks, systems, or services.

In response to the investigation, the Slovak Interior Ministry reportedly removed the equipment from its pilot deployment. The ministry also requested that the supplier remove the units and replace them with equipment that complies with Slovak and EU legal, technical, and security requirements.

The NBÚ's warning does not assert that every device is actively spying or contains a proven backdoor. Instead, it highlights identified security risks, limitations in operator control, uncertainties regarding hardware and software provenance, and remote management mechanisms that could not be fully accounted for.

The authority stressed the importance of thorough security checks for connected public devices, which should not rely solely on brand names, country of origin on invoices, or vendor claims. Operators need to have clear knowledge of the software and firmware running on devices, how remote access functions, and who controls it. Recommendations include independent security testing, secure update processes, and robust network segmentation. This advice extends beyond Slovakia, applying to a wide range of smart infrastructure components such as license plate readers, parking sensors, environmental monitors, and traffic lights, which are often managed by public agencies, contractors, and manufacturers.

vulnerabilitynation-state
ShareXLinkedInWhatsAppFacebook

More News

view all →
vulnerability

Rethinking Application Security for the AI Era

As AI dramatically shortens the time from vulnerability disclosure to exploitation, enterprises must look beyond patching to reduce application risk. The post Rethinking Application Security for the AI Era appeared first on SecurityWeek.

malware

Android car head units infected with proxy botnet malware through built-in software updaters

A newly discovered Android malware, distributed through the built-in updaters in affected Android-based car head units, turns infected devices into ad-fraud tools and nodes in a proxy botnet, Kaspersky has found. According to the researchers, it’s the first documented case of malware found on a car head unit with an infection chain specific to that type of device. “It’s worth noting that head unit

patch

Microsoft shares temporary fix for Windows 11 gaming issues

Microsoft has shared a temporary fix for ongoing gaming issues caused by Windows 11 updates released during the August 2026 Patch Tuesday. [...]

ai

UAT-10147 Uses AI to Scale Server Attacks, Deploys SPECTRE With EDR Bypass and Linux Rootkit

Cybersecurity researchers have disclosed details of a Chinese-speaking cybercrime group dubbed UAT-10147 that's targeting Windows and Linux web servers globally across the education, media, technology, and gaming sectors. The vast majority of the targets are located in Brazil, Bolivia, China, Canada, and Vietnam. Details of the threat activity came to light following the discovery of an open

breach

Researchers Uncover Thousands of Leaked AWS Keys

Truffle Security says it found over 9000 publicly accessible and active AWS key pairs

security

Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund

Claude Security, currently in public beta for Claude Enterprise customers, now runs codebase scans on Mythos 5. The post Anthropic Expands Mythos 5 Access to More Defenders, Unveils $35M Open Source Fund appeared first on SecurityWeek.