Category: CyberSecurityNews

New York Times Internal Data
08
Jun
2024

270GB of New York Times Internal Data and Source Code Leaked

An anonymous hacker has claimed to have leaked 270 GB of internal data and source code from The New York…

Wineloader Mimic As Ambassador Of India To Start The Infection Chain
07
Jun
2024

Wineloader Mimic As Ambassador Of India To Start The Infection Chain

ARC Labs delved into the intricacies of the Wineloader backdoor, a sophisticated tool used in spearphishing campaigns linked to the…

A New Tool that Extracts Dara From Windows 11 Recall Feature
07
Jun
2024

A New Tool that Extracts Dara From Windows 11 Recall Feature

Microsoft’s Windows Recall is a new feature for Copilot+ PCs, announced in May 2024. It takes periodic screenshots (every 5…

Ransomware Actor Exploited CoinMiner Attacker's Proxy Server
07
Jun
2024

Ransomware Actor Exploited CoinMiner Attacker’s Proxy Server

Hackers can hide their names and access blocked websites or networks by using proxy servers, which help make these systems…

Hackers Attack ThinkPHP By Injecting Payload From Remote Servers
07
Jun
2024

Hackers Attack ThinkPHP By Injecting Payload From Remote Servers

Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently, Akamai researchers have…

Critical PHP Remote Code Execution Flaw let Attackers Inject Malicious Scripts
07
Jun
2024

Critical PHP Remote Code Execution Flaw let Attackers Inject Malicious Scripts

The widely used PHP programming language has been discovered with a new remote code execution vulnerability deemed critical severity. Further,…

Huge Surge in Attacks Exploiting Check Point VPN Zero-Day Vulnerability
07
Jun
2024

Huge Surge in Attacks Exploiting Check Point VPN Zero-Day Vulnerability

Check Point published an advisory regarding a critical vulnerability, CVE-2024-24919, which has since seen a surge in exploitation attempts. The…

Microsoft to Disable NTLM, Transition to Kerberos Authentication
07
Jun
2024

Microsoft to Disable NTLM, Transition to Kerberos Authentication

Microsoft has made an announcement regarding the gradual phasing out of all versions of NTLM (NT LAN Manager). This decision…

PoC Exploit Released for High Severity Apache HugeGraph RCE flaw
07
Jun
2024

PoC Exploit Released for Severity Apache HugeGraph RCE flaw

A proof-of-concept (PoC) exploit has been released for a high-severity Remote Code Execution (RCE) vulnerability in the Apache HugeGraph Server….

Cisco Finesse Vulnerabilities Let Attackers Perform Stored XSS Attack
07
Jun
2024

Cisco Finesse Vulnerabilities Let Attackers Perform XSS Attack

Cisco has issued a security advisory detailing multiple vulnerabilities in Cisco Finesse’s web-based management interface. These vulnerabilities, identified as CVE-2024-20404…

Chrome Introduced Shared Memory Versioning to Enhance Browser Performance
07
Jun
2024

Chrome Introduced Shared Memory Versioning

Google Chrome recently implemented Shared Memory Versioning, improving its speed through more effective cookie handling. This upgrade improves Chrome and…

Commando Cat Attacking Docker remote API servers to Deploy Crypto Miners
06
Jun
2024

Commando Cat Attacking Docker remote API servers to Deploy Crypto Miners

A campaign dubbed “Commando Cat” has been observed exploiting exposed Docker remote API servers to deploy cryptocurrency miners. This campaign,…