Author: Cybernoz

New UEFI Secure Boot bypass vulnerability discovered (CVE-2024-7344)
16
Jan
2025

New UEFI Secure Boot bypass vulnerability discovered (CVE-2024-7344)

ESET researchers have identified a vulnerability (CVE-2024-7344) impacting most UEFI-based systems, which allows attackers to bypass UEFI Secure Boot. The…

Pulling PlugX
16
Jan
2025

PlugX malware deleted from thousands of systems by FBI

The FBI says it has removed PlugX malware from thousands of infected computers worldwide. The move came after suspicion that…

Davos 2025: Digital supply chains at risk as world faces two years of turbulence
16
Jan
2025

Davos 2025: Digital supply chains at risk as world faces two years of turbulence

The risk of conflict, growing protectionism, tariffs and trade wars, and growing regulation threaten to disrupt the supply chains of…

Ivanti Endpoint Manager Vulnerabilities Allows Attackers To Extract Sensitive Information
16
Jan
2025

Ivanti Endpoint Manager Vulnerabilities Allows Attackers To Extract Sensitive Information

Ivanti addressed multiple severe vulnerabilities in its Endpoint Manager (EPM) software, potentially exposing organizations to significant data breaches. The most…

Scammers Exploit California Wildfires, Posing as Fire Relief Services
16
Jan
2025

Scammers Exploit California Wildfires, Posing as Fire Relief Services

SUMMARY Cybercriminals are exploiting the California wildfires to launch phishing campaigns. Veriti Research found fake domains like “malibu-firecom” designed to…

Cisco AI Defense safeguards against the misuse of AI tools
16
Jan
2025

Cisco AI Defense safeguards against the misuse of AI tools

Cisco announced Cisco AI Defense, a pioneering solution to enable and safeguard AI transformation within enterprises. As AI technology advances,…

Botnet Malware Exploits 13,000 MikroTik Devices By Abusing Misconfigured DNS Records
16
Jan
2025

Botnet Malware Exploits 13,000 MikroTik Devices By Abusing Misconfigured DNS Records

Cybersecurity experts at Infoblox Threat Intel have uncovered a sophisticated botnet leveraging misconfigured DNS records to bypass email protection systems…

Veeam Azure Backup Vulnerability Allows Attackers to Utilize SSRF & Send Unauthorized Requests
16
Jan
2025

Veeam Azure Backup Vulnerability Allows Attackers to Utilize SSRF & Send Unauthorized Requests

A critical vulnerability has been identified in Veeam Backup for Microsoft Azure, specifically referenced as CVE-2025-23082. Discovered during internal testing,…

Webinar: Amplifying SIEM with AI-driven NDR for IT/OT convergence
16
Jan
2025

Webinar: Amplifying SIEM with AI-driven NDR for IT/OT convergence

Join cybersecurity leader Erwin Eimers from Sumitomo Chemicals Americas to explore how AI-driven Network Detection and Response (NDR) enhances SIEM…

Ivanti Endpoint Manager
16
Jan
2025

Researcher Uncovers Critical Flaws in Multiple Versions of Ivanti Endpoint Manager

Jan 16, 2025Ravie LakshmananVulnerability / Endpoint Security Ivanti has rolled out security updates to address several security flaws impacting Avalanche,…

EU Action Plan To Secure Healthcare From Cyber Threats
16
Jan
2025

EU Action Plan To Secure Healthcare From Cyber Threats

The European Commission has rolled out a comprehensive plan to fortify the cybersecurity of hospitals and healthcare providers across the…

2024 CVE Review - "Critical, High, Medium" Position Shifting in Cybersecurity
16
Jan
2025

2024 CVE Review – “Critical, High, Medium” Position Shifting in Cybersecurity

As the calendar turns to 2025, cybersecurity professionals are taking stock of key trends in Common Vulnerabilities and Exposures (CVEs)…