Juniper Networks fixed a critical flaw in Session Smart Routers

2 years ago

Juniper Networks has addressed a critical vulnerability, tracked as CVE-2025-21589, impacting the Session Smart Router. Juniper Networks addressed a critical…

China-linked APT group Winnti targets Japanese organizations since March 2024

2 years ago

China-linked threat actor Winnti targeted Japanese companies in the manufacturing, materials, and energy sectors in March 2024 as part of…

Xerox VersaLink C7025 Multifunction printer flaws may expose Windows Active Directory credentials to attackers

2 years ago

Xerox VersaLink C7025 Multifunction printer flaws could allow attackers to capture authentication credentials via pass-back attacks via LDAP and SMB/FTP…

New XCSSET macOS malware variant used in limited attacks

2 years ago

Microsoft discovered a new variant of the Apple macOS malware XCSSET that was employed in limited attacks in the wild. Microsoft Threat…

Dutch Police shut down bulletproof hosting provider Zservers and seized 127 servers

2 years ago

Dutch police seized 127 servers of the bulletproof hosting service Zservers/XHost after government sanctions. On February 11, 2025, the US,…

New Golang-based backdoor relies on Telegram for C2 communication

2 years ago

Netskope Threat Labs researchers discovered a Golang-based backdoor using Telegram for C2 communication, possibly of Russian origin. Netskope Threat Labs…

Pro-Russia collective NoName057(16) launched a new wave of DDoS attacks on Italian sites

2 years ago

Pro-Russia collective NoName057(16) launched DDoS attacks on Italian sites, targeting airports, the Transport Authority, major ports, and banks. The pro-Russia…

whoAMI attack could allow remote code execution within AWS account<gwmw style="display:none;"></gwmw>

2 years ago

Researchers warn that the whoAMI attack lets attackers publish an AMI with a specific name to execute code in an…

Storm-2372 used the device code phishing technique since August 2024

2 years ago

Russia-linked group Storm-2372 used the device code phishing technique since Aug 2024 to steal login tokens from governments, NGOs, and…

SECURITY AFFAIRS MALWARE NEWSLETTER ROUND 33

2 years ago

Security Affairs Malware newsletter includes a collection of the best articles and research on malware in the international landscape. Mobile…

This website uses cookies.