Category: TheHackerNews

CVE-2024-38094
23
Oct
2024

CISA Warns of Active Exploitation of Microsoft SharePoint Vulnerability (CVE-2024-38094)

Oct 23, 2024Ravie LakshmananVulnerability / Threat Intelligence A high-severity flaw impacting Microsoft SharePoint has been added to the Known Exploited…

Permiso
23
Oct
2024

A Shake-up in Identity Security Is Looming Large

Oct 23, 2024The Hacker NewsIdentity Security / Data Protection Identity security is front, and center given all the recent breaches…

Ransomware
23
Oct
2024

Ransomware Gangs Use LockBit’s Fame to Intimidate Victims in Latest Attacks

Threat actors have been observed abusing Amazon S3 (Simple Storage Service) Transfer Acceleration feature as part of ransomware attacks designed…

SaaS Security
23
Oct
2024

Think You’re Secure? 49% of Enterprises Underestimate SaaS Risks

It may come as a surprise to learn that 34% of security practitioners are in the dark about how many…

Jailbreak AI Models
23
Oct
2024

Researchers Reveal ‘Deceptive Delight’ Method to Jailbreak AI Models

Oct 23, 2024Ravie LakshmananArtificial Intelligence / Vulnerability Cybersecurity researchers have shed light on a new adversarial technique that could be…

Gophish Framework Used in Phishing Campaigns to Deploy Remote Access Trojans
22
Oct
2024

Gophish Framework Used in Phishing Campaigns to Deploy Remote Access Trojans

Russian-speaking users have become the target of a new phishing campaign that leverages an open-source phishing toolkit called Gophish to…

Crypto Mining Attacks
22
Oct
2024

Cybercriminals Exploiting Docker API Servers for SRBMiner Crypto Mining Attacks

Oct 22, 2024Ravie LakshmananDocker Security / Cloud Security Bad actors have been observed targeting Docker remote API servers to deploy…

NTLM Hashes to Remote Attackers
22
Oct
2024

Security Flaw in Styra’s OPA Exposes NTLM Hashes to Remote Attackers

Oct 22, 2024Ravie LakshmananVulnerability / Software Security Details have emerged about a now-patched security flaw in Styra’s Open Policy Agent…

Ethereum Wallets with SSH Backdoor
22
Oct
2024

Malicious npm Packages Target Developers’ Ethereum Wallets with SSH Backdoor

Oct 22, 2024Ravie LakshmananVulnerability / Supply Chain Cybersecurity researchers have discovered a number of suspicious packages published to the npm…

Active Directory
22
Oct
2024

A Comprehensive Guide to Finding Service Accounts in Active Directory

Oct 22, 2024Ravie LakshmananIdentity Management / Security Automation Service accounts are vital in any enterprise, running automated processes like managing…

Bumblebee and Latrodectus Malware
22
Oct
2024

Bumblebee and Latrodectus Malware Return with Sophisticated Phishing Strategies

Oct 22, 2024Ravie LakshmananMalware / Threat Intelligence Two malware families that suffered setbacks in the aftermath of a coordinated law…

Critical RCE Vulnerability
22
Oct
2024

VMware Releases vCenter Server Update to Fix Critical RCE Vulnerability

Oct 22, 2024Ravie LakshmananVulnerability / Enterprise Security VMware has released software updates to address an already patched security flaw in…