
GuptiMiner Campaign: The Trojan Tango of Infiltrating Antivirus Update...
GuptiMiner Campaign: The Trojan Tango of Infiltrating Antivirus Updates for Deception The GuptiMiner malware campaign is creating significant disruption in the cybersecurity landscape by exploiting a ...

Progress Telerik Report Server Receives Security Update for Critical A...
Progress Telerik Report Server Receives Security Update for Critical Auth Bypass Vulnerability, CVE-2024-4358 [Update] June 14, 2024: “CISA Adds CVE-2024-4358 to Known Exploited Vulnerabilities Catalo...

PoC Exploit for CVE-2024-4956 in Sonatype Nexus Repository 3 Draws Thr...
PoC Exploit for CVE-2024-4956 in Sonatype Nexus Repository 3 Draws Threat Actors’ Attention Sonatype recently released a security advisory alerting users to a high-severity security vulnerabilit...

New Cyber Attack Campaign Bombarding Organizations with Fake Emails an...
New Cyber Attack Campaign Bombarding Organizations with Fake Emails and Phone Calls The cyber threat landscape is always changing, with attackers using new methods to get into organizations and exploi...

CVE-2020-17519 in Apache Flink Enters CISA’s KEV Catalog & GitLab ...
CVE-2020-17519 in Apache Flink Enters CISA’s KEV Catalog & GitLab Patches XSS Flaw, CVE-2024-4835 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Ex...

DNSBomb: A New DoS Threat Targeting Critical Internet Infrastructure
DNSBomb: A New DoS Threat Targeting Critical Internet Infrastructure Illustrative Image – Generated by DALL-E ...

Atlassian and Ivanti Address Critical Vulnerabilities in May Updates: ...
Atlassian and Ivanti Address Critical Vulnerabilities in May Updates: CVE-2024-21683, CVE-2023-4759, CVE-2024-29822, and More [Update] October 3, 2024: “CISA Added Ivanti EPM Vulnerability (CVE-...

Critical Patch for Veeam Backup Enterprise Manager (VBEM): CVE-2024-29...
Critical Patch for Veeam Backup Enterprise Manager (VBEM): CVE-2024-29849 Could Allow Account Takeover [Update] June 10, 2024: “PoC Exploit Released for the Critical CVE-2024-29849 Vulnerability in Ve...

Critical Auth Bypass in GitHub Enterprise Server, CVE-2024-4985; PoC A...
Critical Auth Bypass in GitHub Enterprise Server, CVE-2024-4985; PoC Available for QNAP QTS’ CVE-2024-27130 The vulnerability landscape continues to grow, introducing critical risks that can enable ma...

CVE-2024-4367 in PDF.js Allows JavaScript Execution, Potentially Affec...
CVE-2024-4367 in PDF.js Allows JavaScript Execution, Potentially Affecting Millions of Websites: Update Now Security experts identified a significant vulnerability in PDF.js, a widely used JavaScript ...

Critical Security Updates for Git SCM: CVE-2024-32002 & CVE-2024-3...
Critical Security Updates for Git SCM: CVE-2024-32002 & CVE-2024-32004 Lead to RCE [Update] May 17, 2024: “Exploit for the Critical Git Vulnerability (CVE-2024-32002)” The Git SCM project has rec...

BreachForums Seized Once Again, What is Next?
BreachForums Seized Once Again, What is Next? [Update] July 24, 2024: “Threat Actor Emo Leaks Personal Information of 212,414 BreachForums 1.0 Members” [Update] June 13, 2024: “BreachForums Back Onlin...

SAP Security Patch Day May 2024: Critical CVE-2024-33006 Vulnerability...
SAP Security Patch Day May 2024: Critical CVE-2024-33006 Vulnerability Could Lead to System Takeover On May 14, 2024, SAP delivered its monthly security updates, which included 14 new Security Notes a...

Microsoft May 2024 Patch Tuesday Highlights: 61 CVEs, Actively Exploit...
Microsoft May 2024 Patch Tuesday Highlights: 61 CVEs, Actively Exploited Zero-Days (CVE-2024-30051, CVE-2024-30040) [Update] September 10, 2024: “PoC Exploit Available for Windows DWM Core Libra...

Alleged Europol Breach by IntelBroker
Alleged Europol Breach by IntelBroker [May 11, 2024] Europol made an announcement confirming the breach and added details. [May 11, 2024] Europol data is allegedly sold to an unknown buyer. Europol, t...

BogusBazaar Scams 850K Shoppers Through Fraudulent E-Commerce Sites
BogusBazaar Scams 850K Shoppers Through Fraudulent E-Commerce Sites In a recent investigation, researchers exposed an expansive network of fraudulent e-commerce websites that scammed over 850,000 vict...

Major Cyber Attacks in Review: April 2024
Major Cyber Attacks in Review: April 2024 April 2024 witnessed major cyber attacks targeting sectors from government bodies to technology firms, emphasizing the ever-present and escalating threats in...

Veeam Service Provider Console Affected by Severe RCE Vulnerability: C...
Veeam Service Provider Console Affected by Severe RCE Vulnerability: CVE-2024-29212 Veeam has recently disclosed a significant security vulnerability within Veeam Service Provider Console (VSPC), iden...

New High-Severity Vulnerability in Apache ActiveMQ Poses Risk of Unaut...
New High-Severity Vulnerability in Apache ActiveMQ Poses Risk of Unauthorized Access: CVE-2024-32114 A high-severity vulnerability, CVE-2024-32114, has been discovered in Apache ActiveMQ, potentially ...

Latin America Under Threat: The Venom RAT Campaign's Cyber Invasion In...
Latin America Under Threat: The Venom RAT Campaign’s Cyber Invasion Initiative In Latin America, there is a significant cyber threat posed by the Venom RAT campaign, necessitating swift and decisive a...