Married couple pleaded guilty to laundering billions in cryptocurrency stolen from Bitfinex in 2016

2 years ago

A married couple from New York pleaded guilty this week to laundering billions of dollars stolen from Bitfinex in 2016.…

Malicious packages in the NPM designed for highly-targeted attacks

2 years ago

Researchers discovered a new set of malicious packages on the npm package manager that can exfiltrate sensitive developer data. On…

Attackers use dynamic code loading to bypass Google Play store’s malware detections

2 years ago

Threat actors rely on the 'versioning' technique to evade malware detections of malicious code uploaded to the Google Play Store.…

CISA, FBI, and NSA published the list of 12 most exploited vulnerabilities of 2022

2 years ago

CISA, the FBI, and NSA, along with Five Eyes cybersecurity agencies published a list of the 12 most exploited vulnerabilities…

Decommissioned medical infusion pumps sold on secondary market could reveal Wi-Fi configuration settings

2 years ago

Experts warn that decommissioned medical infusion pumps sold via the secondary market could expose Wi-Fi configuration settings. The sale of…

OWASP Top 10 for LLM (Large Language Model) applications is out!

2 years ago

The OWASP Top 10 for LLM (Large Language Model) Applications version 1.0 is out, it focuses on the potential security risks…

Rapid7 found a bypass for the recently patched actively exploited Ivanti EPMM bug

2 years ago

Researchers discovered a bypass for a recently fixed actively exploited vulnerability in Ivanti Endpoint Manager Mobile (EPMM). Rapid7 cybersecurity researchers…

Russian APT29 conducts phishing attacks through Microsoft Teams

2 years ago

Russia-linked APT29 group targeted dozens of organizations and government agencies worldwide with Microsoft Teams phishing attacks. Microsoft Threat Intelligence reported…

Hackers already installed web shells on 581 Citrix servers in CVE-2023-3519 attacks

2 years ago

Researchers warn that hundreds of Citrix servers have been hacked in an ongoing campaign exploiting the RCE CVE-2023-3519. Security researchers…

Zero-day in Salesforce email services exploited in targeted Facebook phishing campaign

2 years ago

Experts spotted a spear-phishing Facebook campaign exploiting a zero-day vulnerability in Salesforce email services. Researchers from Guardio Labs uncovered a…

This website uses cookies.