The code injection flaw is similar to a prior vulnerability that was immediately flagged in January.
Related Articles
All CyberSecurityDive →Asian government’s espionage campaign breached critical infrastructure in 37 countries
Dive Brief: Hackers working for an Asian government have breached at least 70 government agencies and critical infrastructure organizations in 37 countries over the past…
Social engineering gains ground as preferred method of initial access
Hackers are increasingly breaching corporate IT systems by exploiting age-old human behaviors with the help of sophisticated new technologies. Threat actors are using deepfake videos,…
US chips away at North Korean IT worker fraud with guilty pleas, cryptocurrency seizure
Listen to the article 3 min This audio is auto-generated. Please let us know if you have feedback. The Justice Department continues to crack down…
Gainsight CEO promises transparency as it responds to compromise of Salesforce integration
Gainsight CEO Chuck Ganapathi assured customers in a blog post published Tuesday that it was actively working with Salesforce and third-party forensic experts to respond to…
Even primitive AI-coded malware helps hackers move faster, thwart attribution
Dive Brief: Prolific cybercrime gangs have begun using AI to help them generate malware, signaling a “fundamental shift of dynamics” in the threat environment, IBM’s…
Russian threat actor weaponized Microsoft Management Console flaw
A prolific Russian threat actor is exploiting a zero-day flaw in the Microsoft Management Console (MMC) framework to execute malicious code on targeted systems in…

