cyber security news

Command injection flaw in PHP Composer allowed supply-chain attacksCommand injection flaw in PHP Composer allowed supply-chain attacks

Command injection flaw in PHP Composer allowed supply-chain attacks

A vulnerability in the PHP Composer could have allowed an attacker to execute arbitrary commands and backdoor every PHP package.…

4 years ago
An alleged ransomware attack hit the Italian Banca di Credito Cooperativo causing chaosAn alleged ransomware attack hit the Italian Banca di Credito Cooperativo causing chaos

An alleged ransomware attack hit the Italian Banca di Credito Cooperativo causing chaos

Banca di Credito Cooperativo (BCC), one of the largest Italian cooperative credit banks was hit by a ransomware attack. Banca di…

4 years ago
An issue in the Linux Kernel could allow the hack of your systemAn issue in the Linux Kernel could allow the hack of your system

An issue in the Linux Kernel could allow the hack of your system

An information disclosure issue in Linux Kernel allows KASLR bypass could be potentially exploited in attacks in the wild. An…

4 years ago
Purple Lambert, a new malware of CIA-linked Lambert APT groupPurple Lambert, a new malware of CIA-linked Lambert APT group

Purple Lambert, a new malware of CIA-linked Lambert APT group

Cybersecurity firm Kaspersky discovered a new strain of malware that is believed to be part of the arsenal of theUS…

4 years ago
RotaJakiro Linux backdoor has flown under the radar since 2018RotaJakiro Linux backdoor has flown under the radar since 2018

RotaJakiro Linux backdoor has flown under the radar since 2018

Experts recently uncovered a Linux backdoor, dubbed RotaJakiro, that has flown under the radar for many years while harvest and…

4 years ago
Naikon APT group uses new Nebulae backdoor in attacks aimed at military orgsNaikon APT group uses new Nebulae backdoor in attacks aimed at military orgs

Naikon APT group uses new Nebulae backdoor in attacks aimed at military orgs

China-linked APT Naikon employed a new backdoor in multiple cyber-espionage operations targeting military organizations from Southeast Asia in the last 2 years.…

4 years ago
Google addresses a high severity flaw in V8 engine in ChromeGoogle addresses a high severity flaw in V8 engine in Chrome

Google addresses a high severity flaw in V8 engine in Chrome

Google released updates for Chrome 90 that address a new serious issue, tracked as CVE-2021-21227, in the V8 JavaScript engine…

4 years ago
UK rail network Merseyrail hit by ransomware gangUK rail network Merseyrail hit by ransomware gang

UK rail network Merseyrail hit by ransomware gang

UK rail network Merseyrail was hit by a cyberattack, ransomware operators breached the corporate email system to disclose the attack…

4 years ago
Cloud misconfiguration, a major risk for cloud securityCloud misconfiguration, a major risk for cloud security

Cloud misconfiguration, a major risk for cloud security

Misconfigured cloud-based databases continue to cause data breaches, millions of database servers are currently exposed across cloud providers. Fugue’s new State…

4 years ago
FBI shares with HIBP 4 million email addresses involved in Emotet attacksFBI shares with HIBP 4 million email addresses involved in Emotet attacks

FBI shares with HIBP 4 million email addresses involved in Emotet attacks

The FBI has shared with Have I Been Pwned service 4 million email addresses collected by Emotet botnet and employed…

4 years ago