Critical GeoServer Vulnerability Exploited in Global Malware Campaign
07
Sep
2024

Critical GeoServer Vulnerability Exploited in Global Malware Campaign

A critical GeoServer vulnerability (CVE-2024-36401) is being actively exploited, allowing attackers to take control of systems for malware deployment, cryptojacking,…

Transport for London TfL
06
Sep
2024

Transport for London staff faces systems disruptions after cyberattack

​Transport for London, the city’s public transportation agency, revealed today that its staff has limited access to systems and email due…

SonicWall warns that SonicOS bug exploited in attacks
06
Sep
2024

SonicWall warns that SonicOS bug exploited in attacks

SonicWall warns that SonicOS bug exploited in attacks Pierluigi Paganini September 06, 2024 Recently fixed access control SonicOS vulnerability, tracked…

Avis Car Rental
06
Sep
2024

Car rental giant Avis discloses data breach impacting customers

Image: MidjourneyAmerican car rental giant Avis notified customers that unknown attackers breached one of its business applications last month and…

AI Firm's Misconfigured Server Exposed 5.3 TB of Mental Health Records
06
Sep
2024

AI Firm’s Misconfigured Server Exposed 5.3 TB of Mental Health Records

A misconfigured server from a US-based AI healthcare firm Confidant Health exposed 5.3 TB of sensitive mental health records, including…

SonicWall
06
Sep
2024

SonicWall Urges Users to Patch Critical Firewall Flaw Amid Possible Exploitation

Sep 06, 2024Ravie LakshmananNetwork Security / Threat Detection SonicWall has revealed that a recently patched critical security flaw impacting SonicOS…

GitHub Actions Vulnerable to Typosquatting, Exposing Developers to Hidden Malicious Code
06
Sep
2024

GitHub Actions Vulnerable to Typosquatting, Exposing Developers to Hidden Malicious Code

Sep 06, 2024Ravie LakshmananSoftware Security / Hacking Threat actors have long leveraged typosquatting as a means to trick unsuspecting users…

Hacking misconfigured AWS S3 buckets: A complete guide
06
Sep
2024

Hacking misconfigured AWS S3 buckets: A complete guide

AWS S3 (Simple Storage Service) buckets are a popular storage service used by software companies and organizations to store public…

Microsoft Office
06
Sep
2024

Microsoft Office 2024 to disable ActiveX controls by default

​After Office 2024 launches in October, Microsoft will disable ActiveX controls by default in Word, Excel, PowerPoint, and Visio client…

Naveen Goud
06
Sep
2024

Alternative search engines to Google for achieving data privacy

Google, the dominant force in web search, retains your search history whether you approve or not. Many users question the…

GeoServer Vulnerability
06
Sep
2024

GeoServer Vulnerability Targeted by Hackers to Deliver Backdoors and Botnet Malware

Sep 06, 2024Ravie LakshmananCryptocurrency / APT Attack A recently disclosed security flaw in OSGeo GeoServer GeoTools has been exploited as…

Android
06
Sep
2024

SpyAgent Android malware steals your crypto recovery phrases from images

A new Android malware named SpyAgent uses optical character recognition (OCR) technology to steal cryptocurrency wallet recovery phrases from screenshots…