Critical Ivanti CSA Auth Bypass (CVE-2024-11639) Patched Alongside Oth...
Critical Ivanti CSA Auth Bypass (CVE-2024-11639) Patched Alongside Other High-Impact Flaws Ivanti recently released critical security updates to address several high-impact vulnerabilities in its prod...
Cryptojacking Campaign Targets Docker and Kubernetes: Surge in Contain...
Cryptojacking Campaign Targets Docker and Kubernetes: Surge in Container-Based Attacks A recent surge in cryptojacking campaigns has targeted unsecured Docker and Kubernetes environments, exploiting m...
December 2024 Patch Tuesday Update – One Actively Exploited Zero-Day, ...
December 2024 Patch Tuesday Update – One Actively Exploited Zero-Day, Multiple Critical RCEs; SAP Updates [Update] January 2, 2025: “PoC Exploit Available for Critical CVE-2024-49112 “LDAP Nightmare” ...
Termite Ransomware Attack on Blue Yonder: What You Need to Know
Termite Ransomware Attack on Blue Yonder: What You Need to Know In late November 2024, Blue Yonder, a critical provider of supply chain management solutions, fell victim to a ransomware attack attribu...
OpenWrt’s Attended SysUpgrade (ASU) Vulnerability Exposes Routers to M...
OpenWrt’s Attended SysUpgrade (ASU) Vulnerability Exposes Routers to Malicious Firmware Attacks OpenWrt, a popular open-source Linux-based embedded operating system, recently discovered a critical vul...
Mitel MiCollab PoC Exploit Links CVE-2024-41713 and Zero-Day, Exposing...
Mitel MiCollab PoC Exploit Links CVE-2024-41713 and Zero-Day, Exposing Sensitive Files [Update] January 8, 2025: “CISA Adds Mitel MiCollab Vulnerabilities to KEV Catalog” Cyberattacks tar...
Manson Market Takedown: Europol Aids Law Enforcement Operation to Disr...
Manson Market Takedown: Europol Aids Law Enforcement Operation to Disrupt Online Fraud The digital age has opened the way for increasingly sophisticated cybercriminal networks. These groups target ind...
How Tariffs Impact Supply Chain Security and Strategies to Mitigate Ri...
How Tariffs Impact Supply Chain Security and Strategies to Mitigate Risks Recent announcements regarding new tariffs on China, Mexico, and Canada highlight a looming shift in global trade dynamics. Wi...
Veeam Service Provider Console (VSPC) Users Urged to Patch CVE-2024-42...
Veeam Service Provider Console (VSPC) Users Urged to Patch CVE-2024-42448 and CVE-2024-42449 Veeam has recently released patches addressing two serious security vulnerabilities in its Service Provider...
Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet A...
Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet Activity Cisco has issued a fresh warning regarding CVE-2014-2120, a decade-old vulnerability in its Adaptive Security Appliance (A...
International Operation Dismantles MATRIX: A Sophisticated Encrypted M...
International Operation Dismantles MATRIX: A Sophisticated Encrypted Messaging Service The importance of international collaboration in the fight against cybercrime has once again been demonstrated. M...
Zyxel Firewalls Exploited for Ransomware Attacks; 20 Security Flaws Di...
Zyxel Firewalls Exploited for Ransomware Attacks; 20 Security Flaws Discovered in Advantech Access Points [Update] December 4, 2024: Added details about CVE-2024-11667’s inclusion in CISA’...
RomCom Backdoor Attacks Use Zero-Day Exploits in Mozilla and Windows (...
RomCom Backdoor Attacks Use Zero-Day Exploits in Mozilla and Windows (CVE-2024-9680 & CVE-2024-49039) Recent research has revealed how the RomCom cyber threat group exploited two zero-day vulnerab...
Critical QNAP Vulnerabilities in Notes Station 3 and QuRouter Demand I...
Critical QNAP Vulnerabilities in Notes Station 3 and QuRouter Demand Immediate Patching (CVE-2024-38645, CVE-2024-38643, CVE-2024-48860) QNAP recently released multiple security advisories addressing ...
Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining ...
Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining and Proxyjacking Linux servers, the backbone of countless organizations worldwide, have recently come under siege by a stealthy an...
NodeStealer’s Evolution: A Growing Threat to Facebook Accounts and Bey...
NodeStealer’s Evolution: A Growing Threat to Facebook Accounts and Beyond NodeStealer, a Python-based infostealer, has resurfaced in a more dangerous form, raising the stakes for global cybersecurity ...
Financial Software Company Finastra Investigates Recent Security Incid...
Financial Software Company Finastra Investigates Recent Security Incident Finastra, a prominent financial services software provider, is currently investigating a cybersecurity incident that has raise...
Privilege Escalation Risks in ‘needrestart’ Utility Threaten Linux Sys...
Privilege Escalation Risks in ‘needrestart’ Utility Threaten Linux Systems; OSS-Fuzz Finds 26 Hidden Flaws Recent findings have exposed high-severity flaws in the needrestart utility, a key component ...
Apple, Oracle, and Apache Issue Critical Updates for Actively Exploite...
Apple, Oracle, and Apache Issue Critical Updates for Actively Exploited and High-Risk Vulnerabilities Organizations using Apple, Oracle, and Apache software must act quickly as critical security flaws...
Exploited PAN-OS Zero-Days Threaten Thousands of Firewalls (CVE-2024-0...
Exploited PAN-OS Zero-Days Threaten Thousands of Firewalls (CVE-2024-0012 and CVE-2024-9474) [Update] December 25, 2024: “CVE-2024-9474 Used to Deploy Advanced Backdoor on Palo Alto Firewalls” [Upda...