Realtek Jungle SDK Exploit Attempts Deliver Cling Botnet with STUN-Based C2
Threat actors target unpatched SDK versions to deploy Cling malware; STUN protocol repurposed for command-and-control

Key Takeaways
- Threat actors are exploiting a critical vulnerability in the Realtek Jungle SDK to deploy Cling botnet malware.
- Cling malware repurposes STUN protocol behavior for command-and-control communications.
- The vulnerability has been patched; updating to the latest SDK version is recommended.
Related Security News

Alleged Ploutus Malware Developer Arrested and Appears in US Court
The U.S. Department of Justice has announced the arrest of the alleged developer of Ploutus malware, which was used in jackpotting attacks to dispense cash from automated teller machines. The suspect appeared in federal court following the arrest. No further details regarding the defendant's identity or the specific charges were provided in the initial announcement.

Critical Vulnerability in Dell System Update (DSU) CLI Deployment Tool Exposes Root Privileges
Dell has identified a critical vulnerability in the System Update (DSU) command-line interface deployment tool that could allow attackers to gain root privileges on affected systems. The company is urging customers to apply security updates immediately via official support channels. No CVE has been assigned at the time of reporting, and exploitation in the wild has not been confirmed.



