SOCRadar® Cyber Intelligence Inc. | Critical Ivanti CSA Auth Bypass (CVE-2024-11639) Patched Alongside Other High-Impact Flaws
Dec 11, 2024
Critical Ivanti CSA Auth Bypass (CVE-2024-11639) Patched Alongside Oth...

Critical Ivanti CSA Auth Bypass (CVE-2024-11639) Patched Alongside Other High-Impact Flaws Ivanti recently released critical security updates to address several high-impact vulnerabilities in its prod...

Learn More
SOCRadar® Cyber Intelligence Inc. | Cryptojacking Campaign Targets Docker and Kubernetes: Surge in Container-Based Attacks
Dec 11, 2024
Cryptojacking Campaign Targets Docker and Kubernetes: Surge in Contain...

Cryptojacking Campaign Targets Docker and Kubernetes: Surge in Container-Based Attacks A recent surge in cryptojacking campaigns has targeted unsecured Docker and Kubernetes environments, exploiting m...

Learn More
SOCRadar® Cyber Intelligence Inc. | December 2024 Patch Tuesday Update – One Actively Exploited Zero-Day, Multiple Critical RCEs; SAP Updates
Dec 11, 2024
December 2024 Patch Tuesday Update – One Actively Exploited Zero-Day, ...

December 2024 Patch Tuesday Update – One Actively Exploited Zero-Day, Multiple Critical RCEs; SAP Updates [Update] January 2, 2025: “PoC Exploit Available for Critical CVE-2024-49112 “LDAP Nightmare” ...

Learn More
SOCRadar® Cyber Intelligence Inc. | Termite Ransomware Attack on Blue Yonder: What You Need to Know
Dec 10, 2024
Termite Ransomware Attack on Blue Yonder: What You Need to Know

Termite Ransomware Attack on Blue Yonder: What You Need to Know In late November 2024, Blue Yonder, a critical provider of supply chain management solutions, fell victim to a ransomware attack attribu...

Learn More
SOCRadar® Cyber Intelligence Inc. | OpenWrt’s Attended SysUpgrade (ASU) Vulnerability Exposes Routers to Malicious Firmware Attacks
Dec 10, 2024
OpenWrt’s Attended SysUpgrade (ASU) Vulnerability Exposes Routers to M...

OpenWrt’s Attended SysUpgrade (ASU) Vulnerability Exposes Routers to Malicious Firmware Attacks OpenWrt, a popular open-source Linux-based embedded operating system, recently discovered a critical vul...

Learn More
SOCRadar® Cyber Intelligence Inc. | Mitel MiCollab PoC Exploit Links CVE-2024-41713 and Zero-Day, Exposing Sensitive Files
Dec 06, 2024
Mitel MiCollab PoC Exploit Links CVE-2024-41713 and Zero-Day, Exposing...

Mitel MiCollab PoC Exploit Links CVE-2024-41713 and Zero-Day, Exposing Sensitive Files [Update] January 8, 2025: “CISA Adds Mitel MiCollab Vulnerabilities to KEV Catalog”  Cyberattacks tar...

Learn More
SOCRadar® Cyber Intelligence Inc. | Manson Market Takedown: Europol Aids Law Enforcement Operation to Disrupt Online Fraud
Dec 06, 2024
Manson Market Takedown: Europol Aids Law Enforcement Operation to Disr...

Manson Market Takedown: Europol Aids Law Enforcement Operation to Disrupt Online Fraud The digital age has opened the way for increasingly sophisticated cybercriminal networks. These groups target ind...

Learn More
SOCRadar® Cyber Intelligence Inc. | How Tariffs Impact Supply Chain Security and Strategies to Mitigate Risks
Dec 05, 2024
How Tariffs Impact Supply Chain Security and Strategies to Mitigate Ri...

How Tariffs Impact Supply Chain Security and Strategies to Mitigate Risks Recent announcements regarding new tariffs on China, Mexico, and Canada highlight a looming shift in global trade dynamics. Wi...

Learn More
SOCRadar® Cyber Intelligence Inc. | Veeam Service Provider Console (VSPC) Users Urged to Patch CVE-2024-42448 and CVE-2024-42449
Dec 04, 2024
Veeam Service Provider Console (VSPC) Users Urged to Patch CVE-2024-42...

Veeam Service Provider Console (VSPC) Users Urged to Patch CVE-2024-42448 and CVE-2024-42449 Veeam has recently released patches addressing two serious security vulnerabilities in its Service Provider...

Learn More
SOCRadar® Cyber Intelligence Inc. | Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet Activity
Dec 04, 2024
Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet A...

Old Cisco ASA Vulnerability (CVE-2014-2120) Fuels Androxgh0st Botnet Activity Cisco has issued a fresh warning regarding CVE-2014-2120, a decade-old vulnerability in its Adaptive Security Appliance (A...

Learn More
SOCRadar® Cyber Intelligence Inc. | International Operation Dismantles MATRIX: A Sophisticated Encrypted Messaging Service
Dec 03, 2024
International Operation Dismantles MATRIX: A Sophisticated Encrypted M...

International Operation Dismantles MATRIX: A Sophisticated Encrypted Messaging Service The importance of international collaboration in the fight against cybercrime has once again been demonstrated. M...

Learn More
SOCRadar® Cyber Intelligence Inc. | Zyxel Firewalls Exploited for Ransomware Attacks; 20 Security Flaws Discovered in Advantech Access Points
Nov 29, 2024
Zyxel Firewalls Exploited for Ransomware Attacks; 20 Security Flaws Di...

Zyxel Firewalls Exploited for Ransomware Attacks; 20 Security Flaws Discovered in Advantech Access Points [Update] December 4, 2024: Added details about CVE-2024-11667’s inclusion in CISA’...

Learn More
SOCRadar® Cyber Intelligence Inc. | RomCom Backdoor Attacks Use Zero-Day Exploits in Mozilla and Windows (CVE-2024-9680 & CVE-2024-49039)
Nov 27, 2024
RomCom Backdoor Attacks Use Zero-Day Exploits in Mozilla and Windows (...

RomCom Backdoor Attacks Use Zero-Day Exploits in Mozilla and Windows (CVE-2024-9680 & CVE-2024-49039) Recent research has revealed how the RomCom cyber threat group exploited two zero-day vulnerab...

Learn More
SOCRadar® Cyber Intelligence Inc. | Critical QNAP Vulnerabilities in Notes Station 3 and QuRouter Demand Immediate Patching (CVE-2024-38645, CVE-2024-38643, CVE-2024-48860)
Nov 26, 2024
Critical QNAP Vulnerabilities in Notes Station 3 and QuRouter Demand I...

Critical QNAP Vulnerabilities in Notes Station 3 and QuRouter Demand Immediate Patching (CVE-2024-38645, CVE-2024-38643, CVE-2024-48860) QNAP recently released multiple security advisories addressing ...

Learn More
SOCRadar® Cyber Intelligence Inc. | Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining and Proxyjacking
Nov 25, 2024
Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining ...

Perfctl Campaign Exploits Millions of Linux Servers for Crypto Mining and Proxyjacking Linux servers, the backbone of countless organizations worldwide, have recently come under siege by a stealthy an...

Learn More
SOCRadar® Cyber Intelligence Inc. | NodeStealer’s Evolution: A Growing Threat to Facebook Accounts and Beyond
Nov 22, 2024
NodeStealer’s Evolution: A Growing Threat to Facebook Accounts and Bey...

NodeStealer’s Evolution: A Growing Threat to Facebook Accounts and Beyond NodeStealer, a Python-based infostealer, has resurfaced in a more dangerous form, raising the stakes for global cybersecurity ...

Learn More
SOCRadar® Cyber Intelligence Inc. | Financial Software Company Finastra Investigates Recent Security Incident
Nov 21, 2024
Financial Software Company Finastra Investigates Recent Security Incid...

Financial Software Company Finastra Investigates Recent Security Incident Finastra, a prominent financial services software provider, is currently investigating a cybersecurity incident that has raise...

Learn More
SOCRadar® Cyber Intelligence Inc. | Privilege Escalation Risks in ‘needrestart’ Utility Threaten Linux Systems; OSS-Fuzz Finds 26 Hidden Flaws
Nov 21, 2024
Privilege Escalation Risks in ‘needrestart’ Utility Threaten Linux Sys...

Privilege Escalation Risks in ‘needrestart’ Utility Threaten Linux Systems; OSS-Fuzz Finds 26 Hidden Flaws Recent findings have exposed high-severity flaws in the needrestart utility, a key component ...

Learn More
SOCRadar® Cyber Intelligence Inc. | Apple, Oracle, and Apache Issue Critical Updates for Actively Exploited and High-Risk Vulnerabilities
Nov 20, 2024
Apple, Oracle, and Apache Issue Critical Updates for Actively Exploite...

Apple, Oracle, and Apache Issue Critical Updates for Actively Exploited and High-Risk Vulnerabilities Organizations using Apple, Oracle, and Apache software must act quickly as critical security flaws...

Learn More
SOCRadar® Cyber Intelligence Inc. | Exploited PAN-OS Zero-Days Threaten Thousands of Firewalls (CVE-2024-0012 and CVE-2024-9474)
Nov 19, 2024
Exploited PAN-OS Zero-Days Threaten Thousands of Firewalls (CVE-2024-0...

Exploited PAN-OS Zero-Days Threaten Thousands of Firewalls (CVE-2024-0012 and CVE-2024-9474) [Update] December 25, 2024: “CVE-2024-9474 Used to Deploy Advanced Backdoor on Palo Alto Firewalls”   [Upda...

Learn More