OpenSSH bugs allows Man-in-the-Middle and DoS Attacks

1 year ago

Two OpenSSH vulnerabilities could allow machine-in-the-middle (MitM) and denial-of-service (DoS) attacks under certain conditions. The Qualys Threat Research Unit (TRU) has discovered…

U.S. CISA adds SonicWall SonicOS and Palo Alto PAN-OS flaws to its Known Exploited Vulnerabilities catalog

1 year ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds SonicWall SonicOS and Palo Alto PAN-OS vulnerabilities to its Known Exploited Vulnerabilities…

Juniper Networks fixed a critical flaw in Session Smart Routers

1 year ago

Juniper Networks has addressed a critical vulnerability, tracked as CVE-2025-21589, impacting the Session Smart Router. Juniper Networks addressed a critical…

China-linked APT group Winnti targets Japanese organizations since March 2024

1 year ago

China-linked threat actor Winnti targeted Japanese companies in the manufacturing, materials, and energy sectors in March 2024 as part of…

Xerox VersaLink C7025 Multifunction printer flaws may expose Windows Active Directory credentials to attackers

1 year ago

Xerox VersaLink C7025 Multifunction printer flaws could allow attackers to capture authentication credentials via pass-back attacks via LDAP and SMB/FTP…

New XCSSET macOS malware variant used in limited attacks

1 year ago

Microsoft discovered a new variant of the Apple macOS malware XCSSET that was employed in limited attacks in the wild. Microsoft Threat…

Dutch Police shut down bulletproof hosting provider Zservers and seized 127 servers

1 year ago

Dutch police seized 127 servers of the bulletproof hosting service Zservers/XHost after government sanctions. On February 11, 2025, the US,…

New Golang-based backdoor relies on Telegram for C2 communication

1 year ago

Netskope Threat Labs researchers discovered a Golang-based backdoor using Telegram for C2 communication, possibly of Russian origin. Netskope Threat Labs…

Pro-Russia collective NoName057(16) launched a new wave of DDoS attacks on Italian sites

1 year ago

Pro-Russia collective NoName057(16) launched DDoS attacks on Italian sites, targeting airports, the Transport Authority, major ports, and banks. The pro-Russia…

whoAMI attack could allow remote code execution within AWS account<gwmw style="display:none;"></gwmw>

1 year ago

Researchers warn that the whoAMI attack lets attackers publish an AMI with a specific name to execute code in an…

This website uses cookies.