Category: CyberSecurityNews

Hackers Allegedly Claiming Breach Of Hewlett Packard Enterprise
20
Jan
2025

Hackers Allegedly Claiming Breach Of Hewlett Packard Enterprise

Threat actor IntelBroker allegedly breached Hewlett Packard Enterprise (HPE) and claimed responsibility for the intrusion on a dark web forum….

Beware Of Your LinkedIn Contacts, They May Targeting Your Organization Assets
20
Jan
2025

Beware Of Your LinkedIn Contacts, They May Targeting Your Organization Assets

A significant cybersecurity threat involving North Korean hackers exploiting LinkedIn as an entry point to infiltrate organizations.  This attack has…

New Android Malware Mimics Chat App to Steal Sensitive Data
20
Jan
2025

New Android Malware Mimics Chat App to Steal Sensitive Data

A sophisticated Android malware campaign targeting users in South Asia, particularly in the Kashmir region of India has been recently…

Researchers Identify Principles to Reduce Noise in Network Intrusion Detection Systems in SOC
20
Jan
2025

Researchers Identify Principles to Reduce Noise in Network Intrusion Detection Systems in SOC

A group of researchers from Eindhoven University of Technology has unveiled a new findings that could significantly improve the efficiency…

Hackers Weaponize npm Packages To Steal Solana Private Keys Via Gmail
20
Jan
2025

Hackers Weaponize npm Packages To Steal Solana Private Keys Via Gmail

Hackers have deployed malicious npm packages designed to exfiltrate Solana private keys through Gmail’s trusted infrastructure, as uncovered recently by…

PoC Exploit Released For QNAP Remote Code Execution Vulnerability
20
Jan
2025

PoC Exploit Released For QNAP Remote Code Execution Vulnerability

A critical remote code execution (RCE) vulnerability designated as CVE-2024-53691 has been identified in the QNAP QTS/QuTS hero operating system….

Microsoft Configuration Manager Vulnerability Allows Remote Code Execution
20
Jan
2025

Microsoft Configuration Manager Vulnerability Allows Remote Code Execution

A critical vulnerability, CVE-2024-43468, has been identified in Microsoft Configuration Manager (ConfigMgr), posing a severe security risk to organizations relying…

Windows Common Log File System Zero-day Vulnerability (CVE-2024-49138) Exploited
20
Jan
2025

Windows Common Log File System Zero-day Vulnerability (CVE-2024-49138) Exploited

A zero-day vulnerability in the Windows Common Log File System (CLFS) driver, designated as CVE-2024-49138. This critical flaw, identified by…

Windows 11 BitLocker-Encrypted Files Accessed Without Disassembling Laptops
20
Jan
2025

Windows 11 BitLocker-Encrypted Files Accessed Without Disassembling Laptops

Researchers demonstrated how attackers can bypass its protections without physically tampering with the device. The exploit, known as “bitpixie” (CVE-2023-21563),…

Linux Kernal 6.13 Released - What's New!
20
Jan
2025

Linux Kernal 6.13 Released – What’s New!

Linus Torvalds announced the final release of Linux Kernel 6.13, marking the end of its development cycle. As expected, the…

Yubico PAM Module Vulnerability Let Attackers Bypass Authentications In Certain Configurations
17
Jan
2025

Yubico PAM Module Vulnerability Let Attackers Bypass Authentications In Certain Configurations

A leading provider of hardware authentication security keys, Yubico has recently disclosed a significant vulnerability in its PAM (Pluggable Authentication…

CISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in Wild
17
Jan
2025

CISA Warns of Aviatrix Controllers OS Command Injection Vulnerability Exploited in Wild

The Cybersecurity and Infrastructure Security Agency (CISA) has added a critical vulnerability affecting Aviatrix Controllers to its Known Exploited Vulnerabilities…