Category: Securityaffairs

CERT-UA warns of malware campaign conducted by threat actor UAC-0006
26
May
2024

CERT-UA warns of malware campaign conducted by threat actor UAC-0006

CERT-UA warns of malware campaign conducted by threat actor UAC-0006 Pierluigi Paganini May 26, 2024 The Ukraine CERT-UA warns of…

Fake AV websites used to distribute info-stealer malware
26
May
2024

Fake AV websites used to distribute info-stealer malware

Fake AV websites used to distribute info-stealer malware Pierluigi Paganini May 25, 2024 Threat actors used fake AV websites masquerading…

MITRE December 2023 attack: Threat actors created rogue VMs to evade detection
25
May
2024

MITRE December 2023 attack: Threat actors created rogue VMs to evade detection

MITRE December 2023 attack: Threat actors created rogue VMs to evade detection Pierluigi Paganini May 25, 2024 The MITRE Corporation…

An XSS flaw in GitLab allows attackers to take over accounts
25
May
2024

An XSS flaw in GitLab allows attackers to take over accounts

An XSS flaw in GitLab allows attackers to take over accounts Pierluigi Paganini May 24, 2024 GitLab addressed a high-severity cross-site…

Google fixes eighth actively exploited Chrome zero-day this year
24
May
2024

Google fixes eighth actively exploited Chrome zero-day this year

Google fixes eighth actively exploited Chrome zero-day this year, the third in a month Pierluigi Paganini May 24, 2024 Google…

CISA adds Apache Flink flaw to its Known Exploited Vulnerabilities catalog
24
May
2024

CISA adds Apache Flink flaw to its Known Exploited Vulnerabilities catalog

CISA adds Apache Flink flaw to its Known Exploited Vulnerabilities catalog Pierluigi Paganini May 24, 2024 CISA adds Apache Flink…

Usage of TLS in DDNS Services leads to Information Disclosure in Multiple Vendors
24
May
2024

Usage of TLS in DDNS Services leads to Information Disclosure in Multiple Vendors

Usage of TLS in DDNS Services leads to Information Disclosure in Multiple Vendors Pierluigi Paganini May 24, 2024 The use…

Recall feature in Microsoft Copilot+ PCs raises privacy concerns
24
May
2024

Recall feature in Microsoft Copilot+ PCs raises privacy concerns

Recall feature in Microsoft Copilot+ PCs raises privacy and security concerns Pierluigi Paganini May 24, 2024 UK data watchdog is…

The threat of KeyPlug against Italian industries
23
May
2024

The threat of KeyPlug against Italian industries

APT41: The threat of KeyPlug against Italian industries Pierluigi Paganini May 23, 2024 Tinexta Cyber’s Zlab Malware Team uncovered a…

The threat of KeyPlug against Italian industries
23
May
2024

The threat of KeyPlug against Italian industries

APT41: The threat of KeyPlug against Italian industries Pierluigi Paganini May 23, 2024 Tinexta Cyber’s Zlab Malware Team uncovered a…

Critical SQL Injection flaws impact Ivanti Endpoint Manager (EPM)
23
May
2024

Critical SQL Injection flaws impact Ivanti Endpoint Manager (EPM)

Critical SQL Injection flaws impact Ivanti Endpoint Manager (EPM) Pierluigi Paganini May 23, 2024 Ivanti addressed multiple flaws in the…

Chinese actor 'Unfading Sea Haze' remained undetected for five years
23
May
2024

Chinese actor ‘Unfading Sea Haze’ remained undetected for five years

Chinese actor ‘Unfading Sea Haze’ remained undetected for five years Pierluigi Paganini May 23, 2024 A previously unknown China-linked threat…