By using this site, you agree to the Privacy Policy and Terms of Use.
Accept
World of SoftwareWorld of SoftwareWorld of Software
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Search
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
Reading: Attacks observed on SimpleHelp, Samsung MagicINFO and D-Link DIR-823X
Share
Sign In
Notification Show More
Font ResizerAa
World of SoftwareWorld of Software
Font ResizerAa
  • Software
  • Mobile
  • Computing
  • Gadget
  • Gaming
  • Videos
Search
  • News
  • Software
  • Mobile
  • Computing
  • Gaming
  • Videos
  • More
    • Gadget
    • Web Stories
    • Trending
    • Press Release
Have an existing account? Sign In
Follow US
  • Privacy
  • Terms
  • Advertise
  • Contact
Copyright © All Rights Reserved. World of Software.
World of Software > Software > Attacks observed on SimpleHelp, Samsung MagicINFO and D-Link DIR-823X
Software

Attacks observed on SimpleHelp, Samsung MagicINFO and D-Link DIR-823X

News Room
Last updated: 2026/04/27 at 3:12 AM
News Room Published 27 April 2026
Share
Attacks observed on SimpleHelp, Samsung MagicINFO and D-Link DIR-823X
SHARE

The US IT security authority CISA has observed attacks on SimpleHelp, Samsung MagicINFO and D-Link DIR-823X. Some of the security holes attacked are a little older.

Read more after the ad

In the CISA warning, the agency lists the vulnerability entries. The attacks currently underway targeting gaps in the SimpleHelp RMM remote maintenance tool appear to be the most serious. One of them allows low-privilege attackers to create high-privilege API keys and thus gain the server admin role (CVE-2024-57726, CVSS 9.9Risk „critical“). The other allows the upload of manipulated ZIP files, which transport files to any location on the file system and thus allow the execution of your own code with the rights of the SimpleHelp server (CVE-2024-57728, CVSS 7.2Risk „hoch“). Version 5.5.8 or later corrects the problems. However, the vulnerabilities were already attacked in January 2025. Apparently some admins still have not applied the available updates.

Samsung MagicINFO 9 Server is a digital signage platform for controlling displays in companies and public institutions. Due to a vulnerability, attackers can write arbitrary files to the system with system rights. This apparently allows injected code to be executed. The vulnerability CVE-2024-7399 (CVSS 9.8Risk „critical“) is already a bit older, Samsung has given it an update in August 2024. Activating the automatic update via “Menu” – “Support” – “Software Update” should find the update and push it to the device.

Botnet on EOL router

Malicious actors are also targeting the D-Link DIR-823X routers. This allows attackers from the network to execute arbitrary commands after logging in (CVE-2025-29635, CVSS 7.2Risk „hoch“). However, support for these routers has already expired on November 15, 2024. Anyone who still has such an outdated device in the IT environment should quickly replace it with a device that is provided with security updates by the manufacturer. The cloud and security provider Akamai reported last week about attacks on D-Link routers by the Mirai botnet, which is spreading on these outdated devices. The company provides Snort and Yara rules with which it is known Detect attacks and malware.

No further information is known about the other current attacks, such as the type, scope or indicators of successful attacks (Indicators of Compromise, IOC). However, IT managers should apply the available updates quickly.


(dmk)



Unfortunately, this link is no longer valid.

Links to gifted items will be invalid if they are older than 7 days or have been accessed too often.


You need a heise+ package to read this article. Try it now for a week without obligation – without obligation!

Sign Up For Daily Newsletter

Be keep up! Get the latest breaking news delivered straight to your inbox.
By signing up, you agree to our Terms of Use and acknowledge the data practices in our Privacy Policy. You may unsubscribe at any time.
Share This Article
Facebook Twitter Email Print
Share
What do you think?
Love0
Sad0
Happy0
Sleepy0
Angry0
Dead0
Wink0
Previous Article When chatbots say “I don’t know”: A statistical trick improves reliability When chatbots say “I don’t know”: A statistical trick improves reliability
Next Article Google bets up to  billion on Anthropic Google bets up to $40 billion on Anthropic
Leave a comment

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Stay Connected

248.1k Like
69.1k Follow
134k Pin
54.3k Follow

Latest News

Bitcoin is back at the gates of ,000
Bitcoin is back at the gates of $80,000
Mobile
Sony’s table tennis robot Ace is making history
Sony’s table tennis robot Ace is making history
News
Google bets up to  billion on Anthropic
Google bets up to $40 billion on Anthropic
Computing
When chatbots say “I don’t know”: A statistical trick improves reliability
When chatbots say “I don’t know”: A statistical trick improves reliability
Gadget

You Might also Like

Another step towards TI 2.0: D-Trust shows cardless institutional identity
Software

Another step towards TI 2.0: D-Trust shows cardless institutional identity

3 Min Read
OpenAI launches biosecurity bug bounty program
Software

OpenAI launches biosecurity bug bounty program

3 Min Read
Helpful architecture documentation in less than 60 minutes
Software

Helpful architecture documentation in less than 60 minutes

3 Min Read
Comment: Not a hack, just ignorance
Software

Comment: Not a hack, just ignorance

7 Min Read
//

World of Software is your one-stop website for the latest tech news and updates, follow us now to get the news that matters to you.

Quick Link

  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact

Topics

  • Computing
  • Software
  • Press Release
  • Trending

Sign Up for Our Newsletter

Subscribe to our newsletter to get our newest articles instantly!

World of SoftwareWorld of Software
Follow US
Copyright © All Rights Reserved. World of Software.
Welcome Back!

Sign in to your account

Lost your password?