information security news

An ongoing malware campaign exploits Microsoft Exchange Server flaws

A threat actor is targeting organizations in Africa and the Middle East by exploiting Microsoft Exchange Server flaws to deliver…

2 years ago

Critical GitHub Enterprise Server Authentication Bypass bug. Fix it now!<gwmw style="display: none; background-color: transparent;"></gwmw>

GitHub addressed a vulnerability in the GitHub Enterprise Server (GHES) that could allow an attacker to bypass authentication. GitHub has…

2 years ago

OmniVision disclosed a data breach after the 2023 Cactus ransomware attack

The digital imaging products manufacturer OmniVision disclosed a data breach after the 2023 ransomware attack. OmniVision Technologies is a company that…

2 years ago

CISA adds NextGen Healthcare Mirth Connect flaw to its Known Exploited Vulnerabilities catalog <gwmw style="display:none;"></gwmw>

CISA adds NextGen Healthcare Mirth Connect deserialization of untrusted data vulnerability to its Known Exploited Vulnerabilities catalog. The U.S. Cybersecurity…

2 years ago

Blackbasta group claims to have hacked Atlas, one of the largest US oil distributors

The Blackbasta extortion group claims to have hacked Atlas, one of the largest national distributors of fuel in the United…

2 years ago

Experts warn of a flaw in Fluent Bit utility that is used by major cloud platforms and firms<gwmw style="display:none;"></gwmw>

A vulnerability in the Fluent Bit Utility, which is used by major cloud providers, can lead to DoS, information disclosure,…

2 years ago

<gwmw style="display: none; background-color: transparent;"></gwmw>Experts released PoC exploit code for RCE in QNAP QTS<gwmw style="display: none; background-color: transparent;"></gwmw>

Experts warn of fifteen vulnerabilities in the QNAP QTS, the operating system for the Taiwanese vendor's NAS products. An audit…

2 years ago

GitCaught campaign relies on Github and Filezilla to deliver multiple malware

Researchers discovered a sophisticated cybercriminal campaign by Russian-speaking threat actors that used GitHub to distribute malware. Recorded Future's Insikt Group…

2 years ago

Two students uncovered a flaw that allows to use laundry machines for free

Two students discovered a security flaw in over a million internet-connected laundry machines that could allow laundry for free. CSC…

2 years ago

Grandoreiro Banking Trojan is back and targets banks worldwide<gwmw style="display:none;"></gwmw>

A new Grandoreiro banking trojan campaign has been ongoing since March 2024, following the disruption by law enforcement in January. IBM…

2 years ago

This website uses cookies.