Author: Cybernoz

Cisco Desk Phone Series Vulnerability Let Remote Attacker Access sensitive information
07
Nov
2024

Cisco Desk Phone Series Vulnerability Let Remote Attacker Access sensitive information

A significant vulnerability (CVE-2024-20445) has been discovered in Cisco Desk Phone 9800 Series, IP Phone 7800 and 8800 Series, and…

Jane Devry
07
Nov
2024

SonicWall Unveils Cutting-Edge Security Solution for Branch and Small Office Environments

On Thursday, November 7, SonicWall is set to unveil a new security solution crafted to meet the specific needs of…

Malware on macOS
07
Nov
2024

North Korean Hackers Target Crypto Firms with Hidden Risk Malware on macOS

A threat actor with ties to the Democratic People’s Republic of Korea (DPRK) has been observed targeting cryptocurrency-related businesses with…

North Korean hackers employ new tactics to compromise crypto-related businesses
07
Nov
2024

North Korean hackers employ new tactics to compromise crypto-related businesses

North Korean hackers are targeting crypto-related businesses with phishing emails and novel macOS-specific malware. The crypto-related phishing campaign Since July…

Stealing AWS Keys
07
Nov
2024

Malicious PyPI Package ‘Fabrice’ Found Stealing AWS Keys from Thousands of Developers

Nov 07, 2024Ravie LakshmananVulnerability / Cloud Security Cybersecurity researchers have discovered a malicious package on the Python Package Index (PyPI)…

China-Aligned MirrorFace Hackers Target EU Diplomats with World Expo 2025 Bait
07
Nov
2024

China-Aligned MirrorFace Hackers Target EU Diplomats with World Expo 2025 Bait

Nov 07, 2024Ravie LakshmananThreat Intelligence / Cyber Espionage The China-aligned threat actor known as MirrorFace has been observed targeting a…

SteelFox and Rhadamanthys Malware
07
Nov
2024

SteelFox and Rhadamanthys Malware Use Copyright Scams, Driver Exploits to Target Victims

An ongoing phishing campaign is employing copyright infringement-related themes to trick victims into downloading a newer version of the Rhadamanthys…

Multiple Vulnerabilities in HPE Aruba Access Points Let Attackers Execute Remote Code
07
Nov
2024

Multiple Vulnerabilities in HPE Aruba Access Points Let Attackers Execute Remote Code

Multiple critical vulnerabilities have been identified in HPE Aruba Access Points, potentially allowing attackers to execute remote code and compromise…

5 Most Common Malware Techniques in 2024
07
Nov
2024

5 Most Common Malware Techniques in 2024

Tactics, techniques, and procedures (TTPs) form the foundation of modern defense strategies. Unlike indicators of compromise (IOCs), TTPs are more…

Expanding Capabilities and Attack Surfaces
07
Nov
2024

Expanding Capabilities and Attack Surfaces

AI and APIs have a symbiotic relationship. APIs power AI by providing the necessary data and functionality, while AI enhances…

Cisco Identity Services Engine Flaw Bypass Authorization Mechanisms
07
Nov
2024

Cisco Identity Services Engine Flaw Bypass Authorization Mechanisms

Cisco has disclosed multiple vulnerabilities impacting its Identity Services Engine (ISE) software. These vulnerabilities could allow authenticated, remote attackers to…

Critical vulnerability in Cisco industrial wireless access points fixed (CVE-2024-20418)
07
Nov
2024

Critical vulnerability in Cisco industrial wireless access points fixed (CVE-2024-20418)

Cisco has fixed a critical command injection vulnerability (CVE-2024-20418) affecting its Ultra-Reliable Wireless Backhaul (URWB) Access Points that can be…