Category: CyberSecurityNews

Curl Vulnerability Attackers Sensitive Information
15
Dec
2024

Curl Vulnerability Let Attackers Access Sensitive Information

A critical security flaw has been discovered in the popular data transfer tool Curl, potentially allowing attackers to access sensitive…

Passkey
14
Dec
2024

Password Era is Ending ” Microsoft to Delete 1 Billion Password to Replace “Passkey

In a significant turn towards a passwordless future, Microsoft has announced groundbreaking strides in adopting passkeys, a secure and user-friendly…

30,000 Devices in Germany Discovered with Pre-installed Malware “Badbox”
14
Dec
2024

30,000 Devices in Germany Discovered with Pre-installed Malware “Badbox”

The Federal Office for Information Security (BSI) in Germany has taken decisive action against a wave of malware-infected digital picture…

CISA Warns of Cleo 0-Day Vulnerability Exploited by Ransomware Gangs
14
Dec
2024

CISA Warns of Cleo 0-Day Vulnerability Exploited by Ransomware Gangs

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent warning about a critical vulnerability in Cleo’s file transfer…

New HeartCrypt Packer-as-a-Service (PaaS) Protecting Malware From Antivirus
14
Dec
2024

New HeartCrypt Packer-as-a-Service (PaaS) Protecting Malware From Antivirus

A new packer-as-a-service (PaaS) called HeartCrypt has emerged as a powerful tool for malware operators to evade antivirus detection. Developed…

Yahoo Terminates Their Entire Red Team
14
Dec
2024

Yahoo Terminates Their Entire Red Team From The “Team Paranoids”

Yahoo has laid off around 25% of its cybersecurity team, known as “The Paranoids,” over the past year, according to…

Hackers Scanning RDP Services Especially Port 1098 For Exploitation
14
Dec
2024

Hackers Scanning RDP Services Especially Port 1098 For Exploitation

There is a significant surge in scanning activities targeting Remote Desktop Protocol (RDP) services, with a particular focus on port…

Hackers Attacking Employees With Weaponized Google Drive Links To Deliver Malware
13
Dec
2024

Hackers Weaponize Google Drive Links to Breach Corporate Networks

A sophisticated attack campaign targeting organizations in Japan and other East Asian countries. The threat actor, identified as APT-C-60, is…

300,000+ Prometheus Servers Exposed To DoS Attacks
13
Dec
2024

300,000+ Prometheus Monitoring Servers Exposed To DoS Attacks

Over 336,000 Prometheus servers and Exporters were exposed to DoS attacks, allowing attackers to obtain sensitive information such as credentials…

New Stealthy Linux Malware PUMAKIT With Unique Privilege Escalation Methods
13
Dec
2024

New Stealthy Linux Malware PUMAKIT With Unique Privilege Escalation Methods

Security researchers at Elastic Security Labs have uncovered a sophisticated Linux malware dubbed PUMAKIT, which employs advanced stealth techniques and…

Critical Dell Security Vulnerabilities Let Attackers Compromise Affected Systems
13
Dec
2024

Critical Dell Security Vulnerabilities Let Attackers Compromise Affected Systems

Dell has recently disclosed two critical security vulnerabilities affecting a wide range of its products, potentially exposing numerous systems to…

Citrix NetScaler Devices Under Attack
13
Dec
2024

Citrix NetScaler Devices Under Attack, Brute-force Attacks Exploiting Zero-days

A significant surge in brute-force attacks targeting Citrix NetScaler devices across multiple organizations. The attacks, primarily originating from a Hong…