Category: CyberSecurityNews

Hacker IntelBroker Leaked 2.9GB of Data Stolen From Cisco DevHub Instance
18
Dec
2024

Hacker IntelBroker Leaked 2.9GB of Data Stolen From Cisco DevHub Instance

The notorious hacker IntelBroker has leaked 2.9GB of data allegedly stolen from Cisco’s DevHub environment. This partial leak, disclosed on…

Earth Koshchei Hackers Using Red Team Tools To Attack RDP Servers
18
Dec
2024

Earth Koshchei Hackers Using Red Team Tools To Attack RDP Servers

A sophisticated cyber espionage campaign leveraging red team tools to exploit Remote Desktop Protocol (RDP) servers has been uncovered, with…

Apache Tomcat RCE Vulnerability
18
Dec
2024

New Apache Tomcat Vulnerabilities Let Attackers Execute Remote Code

Two critical vulnerabilities have been discovered in Apache Tomcat, the popular open-source web server, and servlet container, potentially allowing attackers…

Sentinel agrentless Integration
18
Dec
2024

Microsoft Sentinel Launched Agentless Integration for SAP Security

With critical SAP vulnerabilities being weaponized within 72 hours of a patch release, and unprotected SAP applications provisioned in cloud…

Beware Of Malicious SharePoint Notifications Delivering Xloader Malware
18
Dec
2024

Beware Of Malicious SharePoint Notifications Delivering Xloader Malware

A sophisticated phishing campaign exploiting fake Microsoft SharePoint notifications to distribute the Xloader malware. This malicious operation, recently intercepted by…

Google Calendar phishing
18
Dec
2024

Hackers Exploit Google Calendar & Google Drawings in Phishing Campaigns

Google Calendar, with over 500 million active users worldwide and availability in 41 languages, has long been celebrated for its…

Google’s New XRefer Tool to Analyze More Complex Malware Samples
18
Dec
2024

Google’s New XRefer Tool to Analyze More Complex Malware Samples

Google’s Mandiant FLARE team has unveiled XRefer, a cutting-edge tool designed to streamline the complex process of malware analysis. This…

CISA Issues Best Practices to Secure Microsoft 365 Cloud Environments
18
Dec
2024

CISA Issues Best Practices to Secure Microsoft 365 Cloud Environments

The Cybersecurity and Infrastructure Security Agency (CISA) has released Binding Operational Directive (BOD) 25-01, mandating federal civilian agencies to enhance…

cShell DDOS MALWARE
17
Dec
2024

New DDoS Malware “cShell” Exploit Linux Tools to Attack SSH Servers

The AhnLab Security Intelligence Center (ASEC) has uncovered a new strain of DDoS malware, named cShell, targeting poorly managed Linux…

Apache Struts RCE Vulnerability Actively Exploited in Wild Using Public PoC
17
Dec
2024

Critical RCE Vulnerability in Apache Struts Actively Exploited using Public PoC

A critical security vulnerability has been identified in Apache Struts, a popular open-source framework for building Java-based web applications actively…

FBI Warns Of HiatusRAT Attacking Web Cameras & DVRs To Gain Full Access
17
Dec
2024

FBI Warns Of HiatusRAT Attacking Web Cameras And DVRs To Gain Full Access

The Federal Bureau of Investigation (FBI) has issued a Private Industry Notification (PIN) alerting cybersecurity professionals and system administrators about…

Azure Data Factory And Apache Airflow Integration Flaws Let Attackers Gain Write Access
17
Dec
2024

Azure Data Factory And Apache Airflow Integration Flaws Let Attackers Gain Write Access

Researchers uncovered new security vulnerabilities in the Azure Data Factory Apache Airflow integration dubbed “Dirty DAG”, which allow attackers to…