Category: CyberSecurityNews

Windows OLE Remote Code Execution Vulnerability Could Be Exploited Via Email
15
Jan
2025

Windows OLE Remote Code Execution Vulnerability Could Be Exploited Via Email

Microsoft has disclosed a newly identified critical security vulnerability (CVE-2025-21298) affecting Object Linking and Embedding (OLE), a technology widely used…

CISA Adds Fortinet and Microsoft Zero-Day to Known Exploited Vulnerabilities Catalog
15
Jan
2025

CISA Adds Fortinet and Microsoft Zero-Day to Known Exploited Vulnerabilities Catalog

The Cybersecurity and Infrastructure Security Agency (CISA) has recently updated its Known Exploited Vulnerabilities (KEV) catalog to include critical zero-day…

Fortinet Released Security Updates to Fix 15 Vulnerabilities That Affect Multiple Products
14
Jan
2025

Fortinet Released Security Updates to Fix 15 Vulnerabilities That Affect Multiple Products

Fortinet has released a security update with the fixes for 15 vulnerabilities that affect multiple products with distinct security issues,…

Boost up Your SOC & DFIR Operations with ANY.RUN's Threat Intelligence Feeds
14
Jan
2025

Boost up Your SOC & DFIR Operations with ANY.RUN’s Threat Intelligence Feeds

Effective cyber threat detection and response depend on the ability to access actionable, real-time intelligence. ANY.RUN, a trusted name in…

Critical SAP NetWeaver Vulnerabilities Let Attacker Gain Access to the system
14
Jan
2025

Critical SAP NetWeaver Vulnerabilities Let Attacker Gain Access to the system

SAP has disclosed two critical vulnerabilities in its NetWeaver Application Server for ABAP and ABAP Platform, urging immediate action to…

First Ever OWASP "Top 10 Non-Human Identities (NHI)" Released
14
Jan
2025

First Ever OWASP “Top 10 Non-Human Identities (NHI)” Released

The Open Worldwide Application Security Project’s (OWASP) released the first “Non-Human Identities (NHI) Top 10 used to provide authorization to…

Zero-Day Vulnerability in PDF Files Leaking NTLM Data in Adobe & Foxit Reader
14
Jan
2025

Zero-Day Vulnerability in PDF Files Leaking NTLM Data in Adobe & Foxit Reader

Cybersecurity researchers at EXPMON have uncovered an intriguing “zero-day behavior” in PDF samples that could potentially be exploited by attackers…

Google OAuth "Sign in with Google" Vulnerability Exposes Millions of Accounts
14
Jan
2025

Google OAuth “Sign in with Google” Vulnerability Exposes Millions of Accounts

A critical vulnerability in Google’s “Sign in with Google” authentication flow is putting millions of Americans at risk of data…

Smishing Attack Targets iMessage Users by Exploiting Built-In Phishing Protections
14
Jan
2025

Smishing Attack Targets iMessage Users by Exploiting Built-In Phishing Protections

A new smishing (SMS phishing) campaign is making waves, specifically targeting iMessage users by manipulating Apple’s built-in phishing protections. Users…

Hackers Exploiting Fortinet FortiGate Firewalls Using Zero-Day Vulnerability
14
Jan
2025

Hackers Exploiting Fortinet FortiGate Firewalls Using Zero-Day Vulnerability

Cybersecurity firm Arctic Wolf has disclosed details of an ongoing cyber campaign targeting Fortinet FortiGate firewall devices with exposed management…

New Ransomware Encrypts Amazon S3 Buckets Using SSE-C Encryption
14
Jan
2025

New Ransomware Encrypts Amazon S3 Buckets Using SSE-C Encryption

A new ransomware campaign has surfaced, leveraging Amazon Web Services’ (AWS) Server-Side Encryption with Customer Provided Keys (SSE-C) to encrypt…

UK Domain Registry Nominet Confirms Cyber Attack Exploiting Ivanti RCE Zero-Day
14
Jan
2025

UK Domain Registry Nominet Confirms Cyber Attack Exploiting Ivanti RCE Zero-Day

Nominet, the official registry for .uk domain names and one of the largest country code registries globally has disclosed a…