Category: CyberSecurityNews

Chipmaker Microchip Hit by Cyber Attack, Operations Impacted
21
Aug
2024

Chipmaker Microchip Hit by Cyber Attack, Operations Impacted

Microchip Technology Incorporated, a leading semiconductor manufacturer, has been hit by a significant cyber attack that has disrupted its operations….

Xeon Sender Abusing Nine SaaS providers For Massive SMS Attacks
21
Aug
2024

Xeon Sender Abusing Nine SaaS providers For Massive SMS Attacks

Xeon Sender, a Python script, is a tool that enables threat actors to send spam messages through nine different SaaS…

AWS Configuration Vulnerability Exposes Thousands of Web Apps
21
Aug
2024

AWS Configuration Vulnerability Exposes Thousands of Web Apps

A recent discovery by Miggo Research has unveiled a critical configuration vulnerability in Amazon Web Services (AWS) that exposes thousands…

TA453 Hackers Using Fake podcast To Deliver New BlackSmith Malware Toolkit
21
Aug
2024

TA453 Hackers Using Fake podcast To Deliver New BlackSmith Malware Toolkit

Iranian threat actor TA453 launched a phishing campaign targeting a prominent religious figure with a fake podcast invitation aiming to…

Critical Vulnerability In OpenBMCs For Servers, Leads To Full Compromise
21
Aug
2024

Critical Vulnerability In OpenBMCs For Servers, Leads To Full Compromise

BMCs are specialized microcontrollers embedded in servers and other devices, responsible for monitoring and managing hardware health, including temperature, voltage,…

Hackers Exploit PHP Vulnerability in Windows for Remote Code Execution
21
Aug
2024

Hackers Exploit PHP Vulnerability in Windows for Remote Code Execution

Cybersecurity researchers at Symantec recently identified a new malware that exploits a PHP vulnerability(CVE-2024-4577) in the CGI argument injection flaw….

Hackers Exploited AWS ENV Files to Attack 110,000 Domains & Steal Credentials
21
Aug
2024

Hackers Exploited AWS ENV Files to Attack 110,000 Domains & Steal Credentials

A sophisticated extortion campaign targeted 110,000 domains by exploiting exposed .env files on unsecured web applications. The attackers obtained AWS…

UULoader Attacking Users Via Weaponized PDF
21
Aug
2024

New UULoader Attacking Users Via Weaponized PDF Documents

Malicious .msi installers disguised as legitimate software actively target Korean and Chinese speakers by dubbing UULoader, contain a loader likely…

Microsoft Launches Unified Teams App for Personal & Work Environments
21
Aug
2024

Microsoft Launches Unified Teams App for Personal & Work Environments

Microsoft has unveiled a significant update to its popular collaboration platform, Microsoft Teams, by launching a unified app that brings…

Atlassian Bamboo Data Center & Server Flaw Let Attackers Execute Arbitrary Code
21
Aug
2024

Atlassian Bamboo Data Center & Server Flaw Let Attackers Execute Arbitrary Code

Atlassian has issued a security advisory for a newly discovered high-severity vulnerability affecting its Bamboo Data Center and Server products….

Outlook Zero-click RCE Vulnerability Technical Details Released
21
Aug
2024

Outlook Zero-click RCE Vulnerability Technical Details Released

Researchers at Morphisec have uncovered critical technical details about the recently discovered zero-click remote code execution (RCE) vulnerability in Microsoft…

WordPress Plugin RCE Vulnerability
20
Aug
2024

Critical WordPress Plugin RCE Vulnerability Impacts 100k+ Sites

A severe security flaw has been discovered in GiveWP, a popular WordPress donation plugin with over 100,000 active installations. The…