Category: CyberSecurityNews

Rank Math SEO Plugin Flaw Exposes 2M+ Website to Cyber Attack
26
Mar
2024

Rank Math SEO Plugin Flaw Exposes 2M+ Website to Cyber Attack

A significant vulnerability has been identified in the Rank Math SEO plugin for WordPress. This flaw, cataloged under CVE-2023-32600, exposes…

U.S. and UK Impose Sanctions on APT 31 Chinese Hackers
26
Mar
2024

U.S. and UK Impose Sanctions on APT 31 Chinese Hackers

In a significant move to counter cyber threats, the United States and the United Kingdom have imposed sanctions on a…

Critical OpenVPN Flaw Let Attackers Escalate Privilege
25
Mar
2024

Critical OpenVPN Flaw Let Attackers Escalate Privilege

OpenVPN has released their new version 2.6.10 in which there have been several bug fixes and improvements specifically to the…

2 Firefox Zero-Days Exploited At Pwn2Own : Patch Now
25
Mar
2024

2 Firefox Zero-Days Exploited At Pwn2Own : Patch Now

Mozilla addresses two zero-day vulnerabilities that were recently exploited at the Pwn2Own Vancouver 2024 hacking contest in the Firefox web…

Best Practices for Email Security Headers
25
Mar
2024

Best Practices for Email Security Headers

Email hacking and fraud have become common these days. Cybercriminals can easily break into and take control of mail accounts…

Hackers Transform Raspberry Pi Into A Hacking Tool
25
Mar
2024

Hackers Transform Raspberry Pi Into A Hacking Tool

GEOBOX is specialized software designed for Raspberry Pi devices that have been observed on the Dark Web being marketed as…

Beware of Ramadan & Eid Fitr Online Scams Steal Financial Data
25
Mar
2024

Beware of Ramadan & Eid Fitr Online Scams Steal Financial Data

As the holy month of Ramadan approaches, bringing a surge in online shopping and charitable giving, cybercriminals are ramping up…

XSS Vulnerability in Google Subdomain Let Hackers Hijacks the User Sessions
25
Mar
2024

XSS Vulnerability in Google Subdomain Let Hackers Hijacks the User Sessions

Security researcher Henry N. Caga has identified a significant cross-site scripting (XSS) vulnerability within a Google sub-domain that allows hackers…

MobSF Pen-Testing Tool Input Validation Flaw Leads to SSRF
25
Mar
2024

MobSF Pen-Testing Tool Input Validation Flaw Leads to SSRF

The Mobile Security Framework (MobSF), a widely used pen-testing, malware analysis, and security assessment framework, has been found to contain…

Unsaflok Flaw Let Attackers Open Million of Doors in Seconds
23
Mar
2024

Unsaflok Flaw Let Attackers Open Million of Doors in Seconds

Unsaflok, in Dormakaba’s Saflok electronic RFID locks used in hotels and multi-family housing, allows attackers to forge a master keycard…

Hackers Earned $1,132,500 Pwn2Own 2024
22
Mar
2024

Hackers Earned $1,132,500 Pwn2Own 2024

The Pwn2Own Vancouver 2024 has come to an end, with researchers receiving a total of $1,132,500 for uncovering 29 distinct…

Sysrv Botnet Abuses Google Subdomain To Spread XMRig Miner
22
Mar
2024

Sysrv Botnet Abuses Google Subdomain To Spread XMRig Miner

First identified in 2020, Sysrv is a botnet that uses a Golang worm to infect devices and deploy cryptominers, propagates…