Category: CyberSecurityNews

Chrome Security Update, Patch for 3 High-severity Vulnerabilities
11
Dec
2024

Chrome Security Update, Patch for 3 High-severity Vulnerabilities

Google has released a critical security update for its Chrome browser, addressing three high-severity vulnerabilities that could potentially expose users…

Windows Common Log File System Zero-day
10
Dec
2024

Windows Common Log File System Zero-day (CVE-2024-49138) Exploited in the Wild

A new high-severity security vulnerability, CVE-2024-49138, has been identified as a zero-day in the Windows Common Log File System (CLFS)…

Microsoft Patch Tuesday December 2024
10
Dec
2024

Microsoft December 2024 Patch Tuesday

Microsoft released a security as part of the December Patch Tuesday that addressed 72 vulnerabilities, including 30 classified as critical…

Cleo Zero-Day RCE Vulnerability Actively Exploited in the Wild
10
Dec
2024

Cleo Zero-Day RCE Vulnerability Actively Exploited in the Wild

A critical zero-day vulnerability (CVE-2024-50623) in Cleo’s file transfer products Harmony, VLTrader, and LexiComis being actively exploited by threat actors,…

Microsoft 365 Down
10
Dec
2024

Web Apps and Admin Center Goes Offline

Microsoft is investigating a widespread outage that disrupted access to Microsoft 365 web applications and the Microsoft 365 admin center…

Visual Studio Code Tunnels
10
Dec
2024

Chinese Hackers Using Visual Studio Code Tunnels & RDP To Gain Remote Access

In a sophisticated cyber-espionage campaign dubbed ‘Operation Digital Eye,’ suspected Chinese state-backed hackers targeted major business-to-business IT service providers across…

SAP NetWeaver Vulnerabilities Let Attackers Upload Malicious PDF Files
10
Dec
2024

SAP NetWeaver Vulnerabilities Let Attackers Upload Malicious PDF Files

SAP has issued a crucial security update addressing multiple high-severity vulnerabilities in its NetWeaver Application Server for Java, specifically within…

RedLine Malware Weaponizing Pirated Corporate Softwares To Steal Logins
10
Dec
2024

RedLine Malware Weaponizing Pirated Corporate Softwares To Steal Logins

An ongoing RedLine info-stealer effort targets Russian-speaking entrepreneurs using unlicensed corporate software copies to automate business operations. Attackers were distributing…

WhatsApp View Once Vulnerability Let Attackers Bypass The Privacy Feature
10
Dec
2024

WhatsApp View Once Vulnerability Let Attackers Bypass The Privacy Feature

Meta’s WhatsApp recently faced scrutiny after a significant vulnerability in its “View Once” feature was discovered, allowing attackers to bypass…

Dell Power Manager - Code Execution Vulnerability
10
Dec
2024

Dell Power Manager Vulnerability Let Attackers Execute Malicious Code

A critical security vulnerability has been discovered in Dell Power Manager (DPM), a widely used application for managing power settings…

Radiant Hacked
10
Dec
2024

Radiant Hacked – $50 Million USD Worth Crypto Stolen by North Korean Hackers

Radiant Capital, a prominent decentralized finance (DeFi) protocol, has fallen victim to a major security breach, resulting in the loss…

New Meeten Malware Attacking macOS And Windows Users To Steal Logins
10
Dec
2024

New Meeten Malware Attacking macOS And Windows Users To Steal Logins

A new scam effort has been observed targeting Web3 leveraging fake video conferencing applications to deliver an information stealer dubbed…