Hackerone logo
14
Dec
2024

How Crypto and Blockchain Organizations Manage Complex Attack Surfaces With Competitive Security Testing Programs

There are three factors that differentiate crypto and blockchain organizations from other industries; their attack surfaces, their most common vulnerabilities,…

LKQ
14
Dec
2024

Auto parts giant LKQ says cyberattack disrupted Canadian business unit

Automobile parts giant LKQ Corporation disclosed that one of its business units in Canada was hacked, allowing threat actors to…

Cleo
14
Dec
2024

CISA confirms critical Cleo bug exploitation in ransomware attacks

​CISA confirmed today that a critical security vulnerability in Cleo Harmony, VLTrader, and LexiCom file transfer software is being exploited…

German agency BSI sinkholed a botnet of 30,000 devices infected with BadBox
14
Dec
2024

German agency BSI sinkholed a botnet of 30,000 devices infected with BadBox

German agency BSI sinkholed a botnet of 30,000 devices infected with BadBox Pierluigi Paganini December 13, 2024 The German agency…

Hackerone logo
14
Dec
2024

How a Privilege Escalation Led to Unrestricted Admin Account Creation in Shopify

In a privilege escalation attack, an attacker gains elevated rights, permissions, or entitlements beyond the intended level associated with their…

Citrix
14
Dec
2024

Citrix shares mitigations for ongoing Netscaler password spray attacks

Citrix Netscaler is the latest target in widespread password spray attacks targeting edge networking devices and cloud platforms this year to…

The New Jersey Drone Mystery May Not Actually Be That Mysterious
14
Dec
2024

The New Jersey Drone Mystery May Not Actually Be That Mysterious

Across New Jersey, reports of mysterious drone sightings have been rising for weeks, with people contacting authorities and posting on…

Canadian Eyecare Firm Care1 Exposes 2.2TB of Patient Records
14
Dec
2024

Canadian Eyecare Firm Care1 Exposes 2.2TB of Patient Records

SUMMARY Cybersecurity researcher Jeremiah Fowler discovered an unprotected Care1 database with over 4.8 million patient records. Exposed data included names,…

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits
14
Dec
2024

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits

Dec 13, 2024Ravie LakshmananCyber Attack / Malware A now-removed GitHub repository that advertised a WordPress tool to publish posts to…

Decoding the end of the decade: What CISOs should watch out for
13
Dec
2024

Decoding the end of the decade: What CISOs should watch out for

It’s that time of year where we, in the industry, attempt to be cyber soothsayers. A tall order – even…

Russian cyberspies target Android users with new spyware
13
Dec
2024

Russian cyberspies target Android users with new spyware

Russian cyberspies Gamaredon has been discovered using two Android spyware families named ‘BoneSpy’ and ‘PlainGnome’ to spy on and steal…

Serhiy Tokarev Explains Why Health Tech Startups Are Worth Investing In
13
Dec
2024

Serhiy Tokarev Explains Why Health Tech Startups Are Worth Investing In

Health Tech is booming, projected to grow from $312.92B in 2024 to $981.23B by 2032. Serhiy Tokarev highlights its social…