The code injection flaw is similar to a prior vulnerability that was immediately flagged in January.
Related Articles
All CyberSecurityDive →FCC investigating China-linked companies over evasion of US national security measures
The Federal Communications Commission on Friday said it is investigating whether companies aligned with the People’s Republic of China are still selling banned equipment or…
Is your browser ground zero for cyber-attacks?
The facts are stark: 65% of organizations have little-to-no control over the data being shared in GenAI apps, 98% of organizations said they had policy…
US authorities unmask North Korean IT worker schemes and their American accomplices
Listen to the article 5 min This audio is auto-generated. Please let us know if you have feedback. The Department of Justice on Monday announced…
State-linked groups target critical vulnerability in React Server Components
Researchers warn that critical vulnerabilities in Meta’s React Server Components and Next.js are under threat from botnets and state-linked adversaries. China-nexus threat groups, tracked as…
Surge of credential-based hacking targets Palo Alto Networks GlobalProtect
A coordinated, credential-based hacking campaign has been targeting Palo Alto Networks GlobalProtect services, as well as Cisco SSL VPNs, in a surge of mid-December attacks,…
Suspected contractor for China’s Hafnium group arrested in in Italy
Italian authorities and FBI agents have arrested a Chinese man who allegedly helped Beijing’s Hafnium group conduct a series of high-profile cyberattacks in 2020 and…

