Category: Securityaffairs

Winter Vivern APT exploited zero-day in Roundcube webmail software in recent attacks
26
Oct
2023

Winter Vivern APT exploited zero-day in Roundcube webmail software in recent attacks

Winter Vivern APT exploited zero-day in Roundcube webmail software in recent attacks Pierluigi Paganini October 26, 2023 Russia-linked threat actor…

Pwn2Own Toronto 2023 Day 1
25
Oct
2023

Pwn2Own Toronto 2023 Day 1

Pwn2Own Toronto 2023 Day 1 – organizers awarded $438,750 in prizes Pierluigi Paganini October 25, 2023 The Pwn2Own Toronto 2023…

Critical RCE flaw impacts VMware Aria Operations Networks
25
Oct
2023

VMware addressed critical vCenter flaw also for End-of-Life products

VMware addressed critical vCenter flaw also for End-of-Life products Pierluigi Paganini October 25, 2023 VMware addressed a critical out-of-bounds write vulnerability,…

Large-scale Citrix NetScaler Gateway credential harvesting campaign exploits CVE-2023-3519
25
Oct
2023

Citrix warns admins to patch NetScaler CVE-2023-4966 bug immediately

Citrix warns admins to patch NetScaler CVE-2023-4966 bug immediately Pierluigi Paganini October 25, 2023 Citrix warned of attacks actively exploiting…

New England Biolabs leak sensitive data
25
Oct
2023

New England Biolabs leak sensitive data

New England Biolabs leak sensitive data Pierluigi Paganini October 25, 2023 On September 18th, the Cybernews research team discovered two…

Former NSA employee pleads guilty to attempted selling classified documents to Russia
24
Oct
2023

Former NSA employee pleads guilty to attempted selling classified documents to Russia

Former NSA employee pleads guilty to attempted selling classified documents to Russia Pierluigi Paganini October 24, 2023 A former NSA…

Critical RCE flaw impacts VMware Aria Operations Networks
24
Oct
2023

Experts released PoC exploit code for VMware Aria Operations for Logs flaw

Experts released PoC exploit code for VMware Aria Operations for Logs flaw. Patch it now! Pierluigi Paganini October 24, 2023…

Social engineering attacks target Okta customers to achieve a highly privileged role
24
Oct
2023

How did the Okta Support breach impact 1Password?

How did the Okta Support breach impact 1Password? Pierluigi Paganini October 24, 2023 1Password detected suspicious activity on its Okta…

PII Belonging to Indian Citizens, Including their Aadhaar IDs, Offered for Sale on the Dark Web
24
Oct
2023

PII Belonging to Indian Citizens, Including their Aadhaar IDs, Offered for Sale on the Dark Web

PII Belonging to Indian Citizens, Including their Aadhaar IDs, Offered for Sale on the Dark Web Pierluigi Paganini October 24,…

Spain police dismantled a cybercriminal group who stole data of 4 million individuals
24
Oct
2023

Spain police dismantled a cybercriminal group who stole data of 4 million individuals

Spain police dismantled a cybercriminal group who stole the data of 4 million individuals Pierluigi Paganini October 24, 2023 The…

US CISA added critical Apache RocketMQ flaw to its Known Exploited Vulnerabilities catalog
23
Oct
2023

CISA adds second Cisco IOS XE flaw to its Known Exploited Vulnerabilities catalog

CISA adds second Cisco IOS XE flaw to its Known Exploited Vulnerabilities catalog Pierluigi Paganini October 23, 2023 US CISA…

Zero-day in Cisco ASA and FTD is actively exploited in ransomware attacks
23
Oct
2023

Cisco warns of a second IOS XE zero-day used to infect devices worldwide

Cisco warns of a second IOS XE zero-day used to infect devices worldwide Pierluigi Paganini October 23, 2023 Cisco found…