Progress Software fixed critical RCE CVE-2024-6327 in the Telerik Report Server

2 years ago

Progress Software addressed a critical remote code execution vulnerability, tracked as CVE-2024-6327, in the Telerik Report Server. Telerik Report Server is…

Critical bug in Docker Engine allowed attackers to bypass authorization plugins

2 years ago

A critical flaw in some versions of Docker Engine can be exploited to bypass authorization plugins (AuthZ) under specific circumstances.…

Hackers exploit Microsoft Defender SmartScreen bug CVE-2024-21412 to deliver ACR, Lumma, and Meduza Stealers<gwmw style="display: none; background-color: transparent;"></gwmw>

2 years ago

The CVE-2024-21412 flaw in the Microsoft Defender SmartScreen has been exploited to deliver information stealers such as ACR Stealer, Lumma, and Meduza.…

Michigan Medicine data breach impacted 56953 patients<gwmw style="display:none;"></gwmw>

2 years ago

A cyber attack against Michigan Medicine resulted in the compromise of the personal and health information of approximately 57,000 patients.…

U.S. CISA adds Microsoft Internet Explorer and Twilio Authy bugs to its Known Exploited Vulnerabilities catalog

2 years ago

U.S. Cybersecurity and Infrastructure Security Agency (CISA) adds Microsoft Internet Explorer and Twilio Authy bugs to its Known Exploited Vulnerabilities…

China-linked APT group uses new Macma macOS backdoor version<gwmw style="display: none; background-color: transparent;"></gwmw>

2 years ago

China-linked APT group Daggerfly (aka Evasive Panda, Bronze Highland) Evasive Panda has been spotted using an updated version of the macOS…

FrostyGoop ICS malware targets Ukraine

2 years ago

In April 2024, Dragos researchers spotted the malware FrostyGoop that interacts with Industrial Control Systems (ICS) using the Modbus protocol.…

Hackers abused swap files in e-skimming attacks on Magento sites

2 years ago

Threat actors abused swap files in compromised Magento websites to hide credit card skimmer and harvest payment information. Security researchers…

US Gov sanctioned key members of the Cyber Army of Russia Reborn hacktivists group

2 years ago

The US government sanctioned two Russian hacktivists for their cyberattacks targeting critical infrastructure, including breaches of water facilities. The United…

EvilVideo, a Telegram Android zero-day allowed sending malicious APKs disguised as videos

2 years ago

EvilVideo is a zero-day in the Telegram App for Android that allowed attackers to send malicious APK payloads disguised as…

This website uses cookies.