APT41: The threat of KeyPlug against Italian industries

2 years ago

Tinexta Cyber’s Zlab Malware Team uncovered a backdoor known as KeyPlug employed in attacks against several Italian industries During an…

Critical SQL Injection flaws impact Ivanti Endpoint Manager (EPM)

2 years ago

Ivanti addressed multiple flaws in the Endpoint Manager (EPM), including remote code execution vulnerabilities. Ivanti this week rolled out security…

Chinese actor ‘Unfading Sea Haze’ remained undetected for five years<gwmw style="display: none; background-color: transparent;"></gwmw>

2 years ago

A previously unknown China-linked threat actor dubbed 'Unfading Sea Haze' has been targeting military and government entities since 2018. Bitdefender…

A consumer-grade spyware app found in check-in systems of 3 US hotels

2 years ago

A researcher discovered a consumer-grade spyware app on the check-in systems of at least three Wyndham hotels across the US.…

Critical Veeam Backup Enterprise Manager authentication bypass bug

2 years ago

A critical security vulnerability in Veeam Backup Enterprise Manager could allow threat actors to bypass authentication. A critical vulnerability, tracked…

Cybercriminals are targeting elections in India with influence campaigns

2 years ago

Resecurity warns of a surge in malicious cyber activity targeting the election in India, orchestrated by several independent hacktivist groups…

An ongoing malware campaign exploits Microsoft Exchange Server flaws

2 years ago

A threat actor is targeting organizations in Africa and the Middle East by exploiting Microsoft Exchange Server flaws to deliver…

Critical GitHub Enterprise Server Authentication Bypass bug. Fix it now!<gwmw style="display: none; background-color: transparent;"></gwmw>

2 years ago

GitHub addressed a vulnerability in the GitHub Enterprise Server (GHES) that could allow an attacker to bypass authentication. GitHub has…

OmniVision disclosed a data breach after the 2023 Cactus ransomware attack

2 years ago

The digital imaging products manufacturer OmniVision disclosed a data breach after the 2023 ransomware attack. OmniVision Technologies is a company that…

CISA adds NextGen Healthcare Mirth Connect flaw to its Known Exploited Vulnerabilities catalog <gwmw style="display:none;"></gwmw>

2 years ago

CISA adds NextGen Healthcare Mirth Connect deserialization of untrusted data vulnerability to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity…

This website uses cookies.