Category: CyberSecurityNews

Eve - Stealing Wi-Fi Passwords by Eavesdropping
10
Sep
2023

Eve – Stealing Wi-Fi Passwords by Eavesdropping

Mobile devices and apps play a growing role in user identification, but password theft, resembling identity theft, invites diverse eavesdropping…

Hackers Using ChatGPT to Generate Malware & Social Engineering Threats
10
Sep
2023

Hackers Using ChatGPT to Generate Malware & Social Engineering Threats

Large language models (LLMs) and generative AI are rapidly advancing globally, offering great utility but also raising misuse concerns. The…

Pandora Malware Attacks Android TVs via firmware updates and pirated video
09
Sep
2023

Pandora Malware Attacks Android TVs via firmware updates and pirated video

A new threat to Android devices named android[.]pandora has been identified that compromises the devices when pirated video content is…

Cacti Cross-Site-Scripting Vulnerability Flaw Let Attacker Poison Database
09
Sep
2023

Cacti XSS Vulnerability Let Attacker Poison Database

A Stored Cross-Site Scripting (Stored XSS) vulnerability was recently discovered in Cacti that allows an authenticated user to poison the data…

Threat Actors Modify Malware DGA Patterns to Improve C2 Communication and Complicate Analysis
09
Sep
2023

Threat Actors Alter DGA Patterns to Improve C2 Communication

A Domain Generation Algorithm (DGA) creates numerous domain names, serving as meeting points for malware C&C servers. DGAs help malware…

Researchers Pre-trained LLM Agents Acting as Human Penetration Testers
09
Sep
2023

Researchers Pre-trained LLM Agents Acting as Human Penetration Testers

LLMs have already shown their exceptional abilities in mimicking human text abilities, but their potential reaches further. They now show…

iPhone Zero-Click, Zero-Day Exploited in the Wild to Install Spyware
09
Sep
2023

iPhone Zero-Day Exploited in the Wild to Install Malware

Researchers discovered an actively exploited zero-click vulnerability that was part of an exploit chain aimed at deploying NSO Group’s Pegasus…

Cisco Identity Services Engine Flaw Let Attacker Trigger DoS Condition
09
Sep
2023

Cisco Identity Services Engine Flaw Let Attacker Trigger DoS Condition

Cisco addressed high-impact vulnerability CVE-2023-20243 in the Cisco Identity Services Engine (ISE), allowing attackers to stop processing Radius packets. This vulnerability,…

APT Hackers Exploiting Fortinet & ManageEngine Vulnerability
08
Sep
2023

APT Hackers Exploiting Fortinet & ManageEngine Vulnerability

FortiOS SSL-VPN safeguards against data breaches, while ManageEngine ServiceDesk Plus offers an integrated help desk and asset management for IT…

Check Point & Atmosec
07
Sep
2023

Check Point to Acquire SaaS Vendor Atmosec

Check Point Software Technologies Ltd. (NASDAQ: CHKP), a global leader in cybersecurity solutions, has revealed its strategic move to acquire…

Samsung Issued Patches for Multiple Critical Security Flaws
06
Sep
2023

Samsung Issued Patches for Multiple Critical Security Flaws

Samsung Mobile has issued fixes to address several security flaws discovered in Galaxy phones and tablets. In the September 2023…

Dastardly Is A Free, Lightweight Web App Security Scanner From Burp SuiteАРТ28
06
Sep
2023

Dastardly Web App Security Scanner From Burp Suite

Dastardly is a powerful web vulnerability DAST (Dynamic Application Security Testing) scanner developed to assist organizations in effectively safeguarding their web…