Hackerone logo
14
Dec
2024

How a Privilege Escalation Led to Unrestricted Admin Account Creation in Shopify

In a privilege escalation attack, an attacker gains elevated rights, permissions, or entitlements beyond the intended level associated with their…

Citrix
14
Dec
2024

Citrix shares mitigations for ongoing Netscaler password spray attacks

Citrix Netscaler is the latest target in widespread password spray attacks targeting edge networking devices and cloud platforms this year to…

The New Jersey Drone Mystery May Not Actually Be That Mysterious
14
Dec
2024

The New Jersey Drone Mystery May Not Actually Be That Mysterious

Across New Jersey, reports of mysterious drone sightings have been rising for weeks, with people contacting authorities and posting on…

Canadian Eyecare Firm Care1 Exposes 2.2TB of Patient Records
14
Dec
2024

Canadian Eyecare Firm Care1 Exposes 2.2TB of Patient Records

SUMMARY Cybersecurity researcher Jeremiah Fowler discovered an unprotected Care1 database with over 4.8 million patient records. Exposed data included names,…

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits
14
Dec
2024

390,000+ WordPress Credentials Stolen via Malicious GitHub Repository Hosting PoC Exploits

Dec 13, 2024Ravie LakshmananCyber Attack / Malware A now-removed GitHub repository that advertised a WordPress tool to publish posts to…

Decoding the end of the decade: What CISOs should watch out for
13
Dec
2024

Decoding the end of the decade: What CISOs should watch out for

It’s that time of year where we, in the industry, attempt to be cyber soothsayers. A tall order – even…

Russian cyberspies target Android users with new spyware
13
Dec
2024

Russian cyberspies target Android users with new spyware

Russian cyberspies Gamaredon has been discovered using two Android spyware families named ‘BoneSpy’ and ‘PlainGnome’ to spy on and steal…

Serhiy Tokarev Explains Why Health Tech Startups Are Worth Investing In
13
Dec
2024

Serhiy Tokarev Explains Why Health Tech Startups Are Worth Investing In

Health Tech is booming, projected to grow from $312.92B in 2024 to $981.23B by 2032. Serhiy Tokarev highlights its social…

Viber
13
Dec
2024

Russia blocks Viber in latest attempt to censor communications

Russian telecommunications watchdog Roskomnadzor has blocked the Viber encrypted messaging app, used by hundreds of millions worldwide, for violating the…

OpenWrt Vulnerability
13
Dec
2024

Critical OpenWrt Vulnerability Exposes Devices to Malicious Firmware Injection

Dec 13, 2024The Hacker NewsLinux / Vulnerability A security flaw has been disclosed in OpenWrt’s Attended Sysupgrade (ASU) feature that,…

Android malware
13
Dec
2024

Germany blocks BadBox malware loaded on 30,000 Android devices

Germany’s Federal Office for Information Security (BSI) has disrupted the BadBox malware operation pre-loaded in over 30,000 Android IoT devices…

Why the US Military Can't Just Shoot Down the Mystery Drones
13
Dec
2024

Why the US Military Can’t Just Shoot Down the Mystery Drones

“By all indications, [small unmanned aerial systems] will present a safety and security risk to military installations and other critical…