Author: Cybernoz

Go-based Backdoor
07
Aug
2024

New Go-based Backdoor GoGra Targets South Asian Media Organization

Aug 07, 2024Ravie LakshmananCloud Security / Cyber Espionage An unnamed media organization in South Asia was targeted in November 20233…

Securing data in GCP: A Computer Weekly Downtime Upload podcast
07
Aug
2024

Securing data in GCP: A Computer Weekly Downtime Upload podcast

Listen to this podcast We speak to Google’s director of product management for confidential computing about ensuring the protection of…

Roundcube flaws allow easy email account compromise (CVE-2024-42009, CVE-2024-42008)
07
Aug
2024

Roundcube flaws allow easy email account compromise (CVE-2024-42009, CVE-2024-42008)

Two cross-site scripting vulnerabilities (CVE-2024-42009, CVE-2024-42008) affecting Roundcube could be exploited by attackers to steal users’ emails and contacts, email…

National Public Data Breach
07
Aug
2024

National Public Data Faces Lawsuit, 3Bn People Likely Exposed

A lawsuit has been filed against National Public Data, a background check service owned by Jerico Pictures Inc, for an…

New Android spyware LianSpy relies on Yandex Cloud to avoid detection
07
Aug
2024

New Android spyware LianSpy relies on Yandex Cloud to avoid detection

New Android spyware LianSpy relies on Yandex Cloud to avoid detection Pierluigi Paganini August 07, 2024 A previously unknown Android…

Firefox Patches Multiple High Severity Vulnerabilities
07
Aug
2024

Firefox Patches Multiple High Severity Vulnerabilities

Mozilla has released Firefox 129, addressing multiple high-severity vulnerabilities. These patches are critical for enhancing the browser’s security and protecting…

New Zola Ransomware Using Multiple Tools to Disable Windows Defender
07
Aug
2024

New Zola Ransomware Using Multiple Tools to Disable Windows Defender

Seemingly new ransomware, Zola, is the newest version of the Proton family that appeared in March 2023.  This rebranding highlights…

Veza introduces Access AI to streamline risk management and access control
07
Aug
2024

Veza introduces Access AI to streamline risk management and access control

Veza has released Access AI, a generative AI-powered solution to maintain the principle of least privilege at enterprise scale. With…

Fine to Advanced Software, Advanced Software, NHS, ransomware attack, ransomware
07
Aug
2024

UK’s Data Regulator Proposed £6M Fine To Advanced Software Over 2022 NHS Ransomware Incident

The British data and privacy watchdog plans to fine Advance Software in millions over the 2022 ransomware incident that crippled…

Microsoft 365 Anti-phishing Feature Bypassed
07
Aug
2024

Microsoft 365 Anti-phishing Feature Bypassed Using CSS Style Tags

Phishing is the most effective method for an attacker to infiltrate an organization. Several attack methods and techniques are available…

Cequence Unified API Protection defends against attacks targeting AI applications
07
Aug
2024

Cequence Unified API Protection defends against attacks targeting AI applications

Cequence introduced advancements to its Unified API Protection (UAP) platform, specifically tailored to support the secure use of AI applications…

A complete guide to exploiting advanced SSRF vulnerabilities
07
Aug
2024

A complete guide to exploiting advanced SSRF vulnerabilities

SSRF—short for Server-Side Request Forgery—vulnerabilities are amongst one of the most impactful web security vulnerabilities. Even though they are less…