Category: CyberSecurityNews

Malware Via JPEG Files
18
Jul
2024

Weaponized AWS Packages That Deliver Malware Via JPEG Files

Attackers hide malicious payloads deep within seemingly legitimate Python packages, where two such packages were found. One, img-aws-s3-object-multipart-copy, is a…

SAPwned Vulnerability Attack Let Hackers Users Access Cloud Environments
18
Jul
2024

SAPwned Vulnerability Attack Let Hackers Users Access Cloud Environments

Multiple vulnerabilities in SAP AI Core had been identified, giving malicious actors access to customer data and the ability to…

Cisco Smart Software Manager Flaw Let Attackers Change Any User Passwords
18
Jul
2024

Cisco Smart Software Manager Flaw let Attackers Change Any User Passwords

Cisco has disclosed a critical vulnerability in its Smart Software Manager On-Prem (SSM On-Prem) that permits unauthenticated, remote attackers to…

Beware of Fake Microsoft Teams That Deliver macOS Malware
17
Jul
2024

Beware of Fake Microsoft Teams That Deliver macOS Malware

Hackers often mimic popular tools like Microsoft Teams to exploit people’s trust and familiarity with these applications.  This strategy increases…

Resonance Security Launches Harmony to Help Businesses Combat Web2 and Web3 App Threats
17
Jul
2024

Resonance Security Launches Harmony to Help Businesses Combat Web2 and Web3 App Threats

Cybersecurity firm Resonance Security has rolled out ‘Harmony’, a new asset monitoring tool to guard Web2 and Web3 apps from…

Ivanti Endpoint Manager SQLi Vulnerability Allows Remote Code Execution
17
Jul
2024

Ivanti Endpoint Manager SQLi Vulnerability Allows Remote Code Execution

A critical security flaw, CVE-2024-37381, has been discovered in the Ivanti Endpoint Manager (EPM) 2024 flat. The vulnerability is an…

FIN7 Hackers Employ New Tools to Bypass EDR & Conduct Automated Attacks
17
Jul
2024

FIN7 Employ Develop New Tools to Bypass EDR Solutions

The notorious cybercrime group FIN7 has once again made headlines with the development of new tools designed to bypass Endpoint…

Killer Ultra Malware Attacking EDR Tools From Symantec, Microsoft, And Sentinel One
17
Jul
2024

Killer Ultra Malware Attacking EDR Tools From Symantec, Microsoft, And Sentinel One

Killer Ultra malware has been found to be targeting endpoint detection and response (EDR) tools from Symantec, Microsoft, and Sentinel…

Atlassian Data Center & Server Flaw
17
Jul
2024

Atlassian Data Center & Server Flaw Let Hackers Execute Arbitrary Code

Atlassian, a leading provider of collaboration and productivity software, has released critical security updates addressing multiple high-severity vulnerabilities in its…

Tools Used By NullBulge Actor, Who Releases Disney's Internal Communications
17
Jul
2024

Tools Used By NullBulge Actor, Who Releases Disney’s Internal Communications

Hackers often target internal communications tools to obtain confidential information like employee records, business plans, and proprietary technologies. With these…

Encryption Algorithms
16
Jul
2024

What are the Encryption Algorithms Used in Modern Malware?

Malware authors increasingly rely on encryption to obfuscate their code and evade detection by security tools such as YARA, Suricata,…

Rite Aid Data Breach – 2.2 Million Customer Personal Data Exposed
16
Jul
2024

Rite Aid Data Breach – 2.2 Million Customer Personal Data Exposed

Rite Aid, the third-largest drugstore chain in the United States, has disclosed that a data breach in June 2024 exposed…