PoC exploit for critical WhatsUp Gold RCE vulnerability released (CVE-2024-8785)
04
Dec
2024

PoC exploit for critical WhatsUp Gold RCE vulnerability released (CVE-2024-8785)

Researchers have published a proof-of-concept (PoC) exploit for CVE-2024-8785, a critical remote code execution vulnerability affecting Progress WhatsUp Gold, a…

Password Policy
04
Dec
2024

How to Plan a New (and Improved!) Password Policy for Real-World Security Challenges

Many organizations struggle with password policies that look strong on paper but fail in practice because they’re too rigid to…

Cloudflare Developer Domains Abused For Cyber Attacks
04
Dec
2024

Cloudflare Developer Domains Abused For Cyber Attacks

Cloudflare developer domains are actively abused by the threat actors for several illicit malicious purposes, as reported by the security…

Web3.js npm Library
04
Dec
2024

Researchers Uncover Backdoor in Solana’s Popular Web3.js npm Library

Dec 04, 2024Ravie LakshmananSupply Chain Attack Cybersecurity researchers are alerting to a software supply chain attack targeting the popular @solana/web3.js…

Australia, Canada, New Zealand, and the U.S. warn of PRC-linked cyber espionage targeting telecom networks
04
Dec
2024

Australia, Canada, New Zealand, and the U.S. warn of PRC-linked cyber espionage targeting telecom networks

Australia, Canada, New Zealand, and the U.S. warn of PRC-linked cyber espionage targeting telecom networks Pierluigi Paganini December 04, 2024…

Google Chrome Security Update, Patch for High-severity Vulnerability
04
Dec
2024

Google Chrome Security Update, Patch for High-severity Vulnerability

Google has released a significant security update for its Chrome browser, aiming to address several vulnerabilities and enhance user safety….

FortiAppSec Cloud simplifies web application security management
04
Dec
2024

FortiAppSec Cloud simplifies web application security management

Fortinet announced FortiAppSec Cloud, a new cloud-delivered platform that integrates key web application security and performance management tools into a…

New TLDs Like .shop, .top And .xyz Attracting Phishers
04
Dec
2024

New TLDs Like .shop, .top And .xyz Attracting Phishers

A significant surge in phishing attacks has been unveiled by a recent study conducted by Interisle Consulting, with a nearly…

Veza Access Requests reduces the risk of identity-based threats
04
Dec
2024

Veza Access Requests reduces the risk of identity-based threats

Veza announced Veza Access Requests product, enabling organizations to reduce the risk of identity-based threats with automated access policy intelligence…

Europol Shuts Down Criminal Messaging Platform MATRIX
04
Dec
2024

Europol Shuts Down Criminal Messaging Platform MATRIX

On December 3rd, 2024, Europol announced that a joint investigation between French and Dutch law enforcement authorities had successfully dismantled…

U.S. CISA adds ProjectSend, North Grid Proself, and Zyxel firewalls bugs to its Known Exploited Vulnerabilities catalog
04
Dec
2024

U.S. CISA adds ProjectSend, North Grid Proself, and Zyxel firewalls bugs to its Known Exploited Vulnerabilities catalog

U.S. CISA adds ProjectSend, North Grid Proself, and Zyxel firewalls bugs to its Known Exploited Vulnerabilities catalog Pierluigi Paganini December…

Progress WhatsUp Gold RCE Vulnerability
04
Dec
2024

Progress WhatsUp Gold RCE Vulnerability

A registry overwrite remote code execution (RCE) vulnerability has been identified in NmAPI.exe, part of the WhatsUp Gold network monitoring…