#GeoVision
Botnet exploits GeoVision zero-day to install Mirai malware
www.bleepingcomputer.com/news/securit...
Botnet exploits GeoVision zero-day to install Mirai malware
A malware botnet is exploiting a zero-day vulnerability in end-of-life GeoVision devices to compromise and recruit them for likely DDoS or cryptomining attacks.
www.bleepingcomputer.com
November 16, 2024 at 2:23 PM
We observed a 0day exploit in the wild used by a botnet targeting GeoVision EOL devices. The pre-auth command injection vulnerability was verified in collaboration with TWCERT & GeoVision & assigned CVE-2024-11120 (CVSS 9.8)

TWCERT: twcert.org.tw/en/cp-139-82...
NVD: nvd.nist.gov/vuln/detail/...
November 15, 2024 at 9:35 AM
March 30, 2026 at 4:05 PM
A secret meeting with Ningguang ended pretty... well, Bad. (she is seeking some kind of revenge... uopsy!) #genshinimpact #hilichurl #geovision #electrovision #beidou #ningguang #monsterfuck #r18 #hentai #grayscale #black&white #digitalart
April 17, 2025 at 9:41 PM
A malware botnet is exploiting a zero-day vulnerability in end-of-life GeoVision devices to compromise and recruit them for likely DDoS or cryptomining attacks.
www.bleepingcomputer.com/news/securit...
Botnet exploits GeoVision zero-day to install Mirai malware
A malware botnet is exploiting a zero-day vulnerability in end-of-life GeoVision devices to compromise and recruit them for likely DDoS or cryptomining attacks.
www.bleepingcomputer.com
November 15, 2024 at 7:40 PM
A botnet exploits e GeoVision zero-day to compromise EoL devices
A botnet exploits e GeoVision zero-day to compromise EoL devices
A botnet employed in DDoS or cryptomining attacks is exploiting a zero-day in end-of-life GeoVision devices to grow up.
securityaffairs.com
November 17, 2024 at 6:12 AM
🎶🌍 #GeoVision Night brings music and geoscience together in Vienna at #EGU26! An evening of live performances and karaoke — Want to take the stage yourself and share your science through music or poetry?. 👉 Submit your act by 13 April 2026 and be part of the show! ✨ blogs.egu.eu/geolog/2026/...
‘GeoVision’ at EGU26: join us for a night of music and science!
Vienna – the city of music! Of Mozart and Mahler, Beethoven and Brahms – and of the 2026 Eurovision Song Contest! In this spirit, we invite you to a music-filled evening to wrap up EGU26 and let your ...
blogs.egu.eu
April 2, 2026 at 9:16 AM
Botnet exploits GeoVision zero-day to install Mirai malware https://buff.ly/48UEncn
Botnet exploits GeoVision zero-day to install Mirai malware
A malware botnet is exploiting a zero-day vulnerability in end-of-life GeoVision devices to compromise and recruit them for likely DDoS or cryptomining attacks.
buff.ly
November 19, 2024 at 8:12 AM
If you run a vulnerable EOL version, please remove from the Internet and replace it.

We currently track around 17K GeoVision devices (see our device id report for GeoVision devices on your network) of all versions and will be working to identify the vulnerable cases.
November 15, 2024 at 9:35 AM
Attending #EGU26 and interested in art and music? Why not join us for GeoVision 🎵 night?

📆18:10-20:00CEST, Friday 8 May
📍Room E1, Yellow Level, Austria Centre Vienna (ACV)

🙌Interested? Fill out the form here: egu.eu/5GNRJM

👉 Find out more here: egu.eu/8A9WKY
📸 Khelvi Biriukova on imaggeo.egu.eu
April 7, 2026 at 11:29 AM
CVE-2026-57276 - GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability
CVE ID : CVE-2026-57276

Published : July 2, 2026, 2:25 a.m. | 1 hour, 21 minutes ago

Description : GeoWebPlayer (also called "Web Plugin" in the GV-VMS ...
CVE-2026-57276 - GeoVision GeoWebPlayer Websocket Server connectInfo handler stack-based buffer overflow vulnerability
GeoWebPlayer (also called "Web Plugin" in the GV-VMS documentation and "WS Player" for VMS-Cloud) is an addon that can be installed with various GeoVision software (GV-VMS, GV-Cloud, ...). It creates a websocket server that expands the capabilities of the various web-interfaces provided by the GeoVision software and may be necessary …
cvefeed.io
July 2, 2026 at 4:27 AM
-Bitfinex hacker sentenced to 5 years
-Helix mixer admin sentenced to 3 years
-ANOM's Colombia distributor sentenced to 5 years and 3 months
-Three SIM-swappers arrested
-Botnet exploits GeoVision zero-day
-New Termite ransomware group
-New Glove Stealer and BabbleLoader malware
November 18, 2024 at 11:02 AM
A Mirai botnet is exploiting a 2024 bug in MagicINFO, a Samsung digital signage system: isc.sans.edu/diary/rss/31...

...and GeoVision security cameras: www.akamai.com/blog/securit...
"Mirai" Now Exploits Samsung MagicINFO CMS (CVE-2024-7399) - SANS Internet Storm Center
"Mirai" Now Exploits Samsung MagicINFO CMS (CVE-2024-7399), Author: Johannes Ullrich
isc.sans.edu
May 6, 2025 at 7:07 PM
Cisco Talos’ Vulnerability Discovery & Research team recently disclosed three vulnerabilities in WolfSSF, 14 in GeoVision, and one vulnerability in VTK-DICOM: cs.co/63322BEMdja
July 10, 2026 at 1:28 PM
Hackers Exploit #Samsung MagicINFO, GeoVision IoT Flaws to Deploy Mirai #Botnet...

Threat #actors have been observed actively exploiting #security flaws in #GeoVision end-of-life (EoL) Internet of Things (IoT) devices to corral them into a Mirai botnet!

thehackernews.com/2025/05/hack...
Hackers Exploit Samsung MagicINFO, GeoVision IoT Flaws to Deploy Mirai Botnet
Two critical CVEs exploited in GeoVision IoT and Samsung MagicINFO allow Mirai botnet deployment via RCE.
thehackernews.com
May 7, 2025 at 9:09 AM
🚨 Critical flaw in CVE-2026-42369 affects GeoVision GV-VMS V20 (CVSS 10.0). Unauthenticated attackers can gain full SYSTEM access via the WebCam Server.

🔗 basefortify.eu/cve_reports/...

#CVE #CyberSecurity #GeoVision
May 4, 2026 at 8:41 AM
GeoVision ASManager 6.1.2.0: The Unintentional Password Giveaway Fiesta!

GeoVision ASManager 6.1.2.0 exploits reveal secrets like a magician's hat. Watch out for those credentials—they might just disappear! CVE-2025-26263.
thenimblenerd.com?p=1053941
GeoVision ASManager 6.1.2.0: The Unintentional Password Giveaway Fiesta!
GeoVision ASManager 6.1.2.0 or less is vulnerable to credentials disclosure, like leaving your house keys in the front door. By exploiting improper memory handling, attackers can waltz in, access accounts, and even play havoc with your security system. It's the virtual equivalent of a surprise party you definitely didn't plan.
thenimblenerd.com
August 26, 2025 at 6:31 AM
“Geospatial innovation key to tackling climate change, say experts at GeoVision 2025” — EdexLive

#EnvironmentalNews #ClimateChange #Climate
December 21, 2025 at 8:17 AM
July 10, 2026 at 2:42 AM
#EGU26 in Vienna is intense and exciting, so why not unwind a bit?

Join us for a fun karaoke night at GeoVision at the end of the week: a chance to relax, connect, and sing your heart out 🎤✨
May 4, 2026 at 3:18 PM
Hackers exploited vulnerabilities in GeoVision IoT devices (CVE-2024-6047, CVE-2024-11120) and Samsung MagicINFO 9 Server (CVE-2024-7399) to deploy a Mirai botnet for DDoS attacks. The botnet downloaded and executed ARM Mirai malware (LZRD). Updates are crucial for mitigation.#IoTBotnetAttack
May 6, 2025 at 4:02 PM
Good morning!

Two new KEVs this morning:

- CVE-2024-6047
- CVE-2024-11120

Both Unauthenticated OS Command Injection affecting GeoVision EOL devices.
May 7, 2025 at 7:23 AM