News
-
"Chrome 116 Patches 26 Vulnerabilities"Google recently announced the release of Chrome 116 to the stable channel with patches for 26 vulnerabilities, including 21 reported by external researchers. Of the externally reported bugs, eight have a severity rating of "high," with most of them…
-
"Monti Ransomware Targets Legal and Gov't Entities With New Linux-Based Variant"According to new research, the Monti hacker group appears to have reemerged after a two-month hiatus, claiming to target legal and government entities with a new Linux-based ransomware variant. Monti was discovered in June 2022, following the infamous…
-
"Critical Security Flaws Affect Ivanti Avalanche, Threatening 30,000 Organizations"Multiple critical security vulnerabilities have been discovered in Ivanti Avalanche, an enterprise mobile device management solution used by 30,000 organizations. Ivanti Avalanche WLAvanacheServer.exe v6.4.0.0 contains the vulnerabilities, collectively…
-
"Almost 2,000 Citrix NetScaler Servers Backdoored in Hacking Campaign"Nearly 2,000 Citrix NetScaler servers have been compromised in a massive campaign exploiting the critical Remote Code Execution (RCE) flaw, tracked as CVE-2023-3519. According to researchers, over 1,200 servers were backdoored before administrators…
-
"QR Code Phishing Campaign Targets Top US Energy Company"A major US energy company was the target of a phishing campaign that sent more than 1,000 emails containing malicious QR codes designed to steal Microsoft credentials. The campaign, which Cofense discovered in May, used both PNG image attachments and…
-
"LinkedIn Users Targeted in Account Hijacking Campaign"LinkedIn users are the target of an ongoing account hijacking campaign. They are getting locked out of their accounts. The threat actors behind the malicious campaign are holding the compromised accounts for ransom. The Cyberint research team has…
-
"Cleaning Products Giant Clorox Takes Systems Offline Following Cyberattack"Cleaning products manufacturer and marketer Clorox recently announced that it has taken certain systems offline in response to a cyberattack. In a statement, the organization said it recently identified unusual activity on its IT systems. …
-
"ASU Experts Explore National Security Risks of ChatGPT"Experts from Arizona State University (ASU) are bringing further attention to how ChatGPT and other Artificial Intelligence (AI)-driven chatbots threaten national security. According to Nadya Bliss, executive director of ASU's Global Security Initiative…
-
"'DoubleDrive' Attack Turns Microsoft OneDrive Into Ransomware"According to SafeBreach researcher Or Yair, Microsoft's OneDrive file-sharing program can be used as ransomware to encrypt most files on a target machine beyond recovery, partly because Windows and Endpoint Detection and Response (EDR) programs…
-
"Most DDoS Attacks Tied to Gaming, Business Disputes, FBI and Prosecutors Say"According to federal officials investigating Distributed Denial-of-Service (DDoS) incidents, most attacks stem from business or gaming disputes. In recent years, much media coverage of DDoS attacks has centered on groups affiliated with or supporting…
-
"Colorado Health Agency Says 4 Million Impacted by MOVEit Hack"The Colorado Department of Health Care Policy and Financing (HCPF) has recently revealed that the personal information of millions of individuals was compromised in a data breach resulting from the recent MOVEit cyberattack. The HCPF informed the…
-
"Ongoing Xurum Attacks Target Magento 2 E-stores"Researchers at Akamai warn of ongoing attacks, dubbed Xurum, against e-commerce websites using the Magento 2 Content Management System (CMS). Attackers are exploiting a server-side template injection vulnerability, tracked as CVE-2022-24086, with a CVSS…