Author: Cybernoz

Severe VPN Flaws
03
Dec
2024

NachoVPN Tool Exploits Flaws in Popular VPN Clients for System Compromise

Dec 03, 2024Ravie LakshmananEndpoint Security / Vulnerability Cybersecurity researchers have disclosed a set of flaws impacting Palo Alto Networks and…

VMware ‘shock’ spawned lock-in rebellion, says NetApp
03
Dec
2024

VMware ‘shock’ spawned lock-in rebellion, says NetApp

Customer tolerance to supplier lock-in is exhausted due to the “shock” that came from changes in VMware licensing. That’s the…

Salesforce Applications Vulnerability Let Attackers Takeover The Accounts
03
Dec
2024

Salesforce Applications Vulnerability Let Attackers Takeover The Accounts

A recent penetration test conducted on Salesforce Communities revealed critical vulnerabilities that could allow attackers to take over user accounts….

US government, energy sector contractor hit by ransomware
03
Dec
2024

US government, energy sector contractor hit by ransomware

ENGlobal, a Texas-based engineering and automation contractor for companies in the energy sector, has had its data encrypted by attackers….

CISA Releases Updated Security Capabilities Catalog TIC 3.0
03
Dec
2024

CISA Releases Updated Security Capabilities Catalog TIC 3.0

The Cybersecurity and Infrastructure Security Agency (CISA) has released version 3.2 of the Trusted Internet Connections (TIC) 3.0 Security Capabilities…

Poland probes Pegasus spyware abuse under the PiS government
03
Dec
2024

Poland probes Pegasus spyware abuse under the PiS government

Poland probes Pegasus spyware abuse under the PiS government Pierluigi Paganini December 03, 2024 Poland probes Pegasus spyware abuse under…

Apple Employee Suing Company For Monitoring Employee Personal Devices
03
Dec
2024

Apple Employee Suing Company For Monitoring Employee Personal Devices

A current Apple employee has filed a lawsuit against the Apple, accusing the company of invasive surveillance practices that extend…

North Korean Kimsuky Hackers
03
Dec
2024

North Korean Kimsuky Hackers Use Russian Email Addresses for Credential Theft Attacks

Dec 03, 2024Ravie LakshmananThreat Intelligence / Email Security The North Korea-aligned threat actor known as Kimsuky has been linked to…

CERT-In Alerts About Critical Drupal Vulnerabilities
03
Dec
2024

CERT-In Alerts About Critical Drupal Vulnerabilities

The Indian Computer Emergency Response Team (CERT-In) issued a Vulnerability Note CIVN-2024-0353 highlighting several critical vulnerabilities within the widely used…

TP-Link Archer Zero-Day Vulnerability Let Attackers Inject Malicious Commands
03
Dec
2024

TP-Link Archer Zero-Day Vulnerability Let Attackers Inject Malicious Commands

A critical zero-day vulnerability has been discovered in TP-Link Archer, Deco, and Tapo series routers, potentially allowing attackers to inject…

Salesforce Applications Vulnerability Could Allow Full Account Takeover
03
Dec
2024

Salesforce Applications Vulnerability Could Allow Full Account Takeover

A critical vulnerability has been discovered in Salesforce applications that could potentially allow a full account takeover. The vulnerability, uncovered…

Nextcloud Talk: Open-source, GDPR-compliant alternative to Microsoft Teams
03
Dec
2024

Nextcloud Talk: Open-source, GDPR-compliant alternative to Microsoft Teams

Nextcloud has unveiled Nextcloud Talk, an open-source alternative to Microsoft Teams. It’s a privacy-compliant collaboration platform for hybrid teams that…