Category: Securityaffairs

Multiple APT groups exploited WinRAR flaw CVE-2023-38831
19
Oct
2023

Multiple APT groups exploited WinRAR flaw CVE-2023-38831

Multiple APT groups exploited WinRAR flaw CVE-2023-38831 Pierluigi Paganini October 19, 2023 Google TAG reported that both Russia and China-linked…

Californian IT company DNA Micro leaks private mobile phone data
18
Oct
2023

Californian IT company DNA Micro leaks private mobile phone data

Californian IT company DNA Micro leaks private mobile phone data Pierluigi Paganini October 18, 2023 Hundreds of thousands of clients…

Large-scale Citrix NetScaler Gateway credential harvesting campaign exploits CVE-2023-3519
18
Oct
2023

Threat actors have been exploiting CVE-2023-4966 in Citrix NetScaler ADC/Gateway devices since August

Threat actors have been exploiting CVE-2023-4966 in Citrix NetScaler ADC/Gateway devices since August Pierluigi Paganini October 18, 2023 Experts reported…

A flaw in Synology DiskStation Manager allows admin account takeover
18
Oct
2023

A flaw in Synology DiskStation Manager allows admin account takeover

A flaw in Synology DiskStation Manager allows admin account takeover Pierluigi Paganini October 18, 2023 A vulnerability in Synology DiskStation…

D-Link confirms data breach, but downplayed the impact
18
Oct
2023

D-Link confirms data breach, but downplayed the impact

D-Link confirms data breach, but downplayed the impact Pierluigi Paganini October 18, 2023 Taiwanese manufacturer D-Link confirmed a data breach…

Zero-day in Cisco ASA and FTD is actively exploited in ransomware attacks
17
Oct
2023

CVE-2023-20198 zero-day widely exploited to install implants on Cisco IOS XE systems

CVE-2023-20198 zero-day widely exploited to install implants on Cisco IOS XE systems Pierluigi Paganini October 17, 2023 Threat actors exploited…

Phishing campaign targets Ukrainian military entities with drone manual lures
17
Oct
2023

Russia-linked Sandworm APT compromised 11 Ukrainian telecommunications providers

Russia-linked Sandworm APT compromised 11 Ukrainian telecommunications providers Pierluigi Paganini October 17, 2023 Russia-linked APT group Sandworm has hacked eleven…

one employee mistake can cost a company millions
17
Oct
2023

one employee mistake can cost a company millions

Ransomware realities in 2023: one employee mistake can cost a company millions Pierluigi Paganini October 17, 2023 What is the…

Malware-laced 'RedAlert - Rocket Alerts' app targets Israeli users 
17
Oct
2023

Malware-laced ‘RedAlert – Rocket Alerts’ app targets Israeli users 

Malware-laced ‘RedAlert – Rocket Alerts’ app targets Israeli users  Pierluigi Paganini October 17, 2023 Threat actors are targeting Israeli Android…

Zero-day in Cisco ASA and FTD is actively exploited in ransomware attacks
16
Oct
2023

Cisco warns of active exploitation of IOS XE zero-day

Cisco warns of active exploitation of IOS XE zero-day Pierluigi Paganini October 16, 2023 Cisco warned customers of a critical…

Signal denies claims of an alleged zero-day flaw in its platform
16
Oct
2023

Signal denies claims of an alleged zero-day flaw in its platform

Signal denies claims of an alleged zero-day flaw in its platform Pierluigi Paganini October 16, 2023 Encrypted messaging app Signal…

Microsoft Defender thwarted Akira ransomware attack on industrial engineering firm
16
Oct
2023

Microsoft Defender thwarted Akira ransomware attack on industrial engineering firm

Microsoft Defender thwarted Akira ransomware attack on an industrial engineering firm Pierluigi Paganini October 16, 2023 Microsoft thwarted a large-scale…