U.S. CISA adds Fortinet FortiOS flaw to its Known Exploited Vulnerabilities catalog

1 year ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Fortinet FortiOS vulnerability to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity…

Codefinger ransomware gang uses compromised AWS keys to encrypt S3 bucket

1 year ago

The ransomware group Codefinger is using compromised AWS keys to encrypt S3 bucket data using SSE-C, Halcyon researchers warn. The…

CVE-2024-44243 macOS flaw allows persistent malware installation

1 year ago

Microsoft disclosed details of a vulnerability in Apple macOS that could have allowed an attacker to bypass the OS's System…

FBI deleted China-linked PlugX malware from over 4,200 US computers

1 year ago

The FBI has removed Chinese PlugX malware from over 4,200 computers in networks across the United States, the U.S. Department…

Russia-linked APT UAC-0063 target Kazakhstan in with HATVIBE malware

1 year ago

Russia-linked threat actor UAC-0063 targets Kazakhstan to gather economic and political intelligence in Central Asia. Russia-linked threat actors UAC-0063 is…

A new campaign is likely targeting a zero-day in Fortinet FortiGate firewalls<gwmw style="display:none;"></gwmw>

1 year ago

Experts warn of a new campaign targeting an alleged zero-day in Fortinet FortiGate firewalls with management interfaces exposed online. Arctic…

Threat actors exploit Aviatrix Controller flaw to deploy backdoors and cryptocurrency miners

1 year ago

A critical vulnerability in Aviatrix Controller is actively exploited to deploy backdoors and cryptocurrency miners in the wild. A security…

U.S. CISA adds BeyondTrust PRA and RS and Qlik Sense flaws to its Known Exploited Vulnerabilities catalog

1 year ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds BeyondTrust PRA and RS and Qlik Sense flaws to its Known Exploited…

Inexperienced actors developed the FunkSec ransomware using AI tools

1 year ago

FunkSec, a new ransomware group that attacked more than 80 victims in December 2024, was developed using AI tools. The…

Credit Card Skimmer campaign targets WordPress via database injection

1 year ago

Stealthy credit card skimmer targets WordPress e-commerce sites, injecting malicious JavaScript into CMS database tables to evade detection. Sucuri researchers…

This website uses cookies.