information security news

Microsoft addresses a high-severity vulnerability in Azure ADMicrosoft addresses a high-severity vulnerability in Azure AD

Microsoft addresses a high-severity vulnerability in Azure AD

Microsoft recently addressed an information disclosure vulnerability, tracked as CVE-2021-42306, affecting Azure AD. Microsoft has recently addressed an information disclosure…

3 years ago

Attackers deploy Linux backdoor on e-stores compromised with software skimmer

Researchers discovered threat actors installing a Linux backdoor on compromised e-commerce servers after deploying a credit card skimmer into e-stores.…

3 years ago
Zero-Day flaw in FatPipe products actively exploited, FBI warnsZero-Day flaw in FatPipe products actively exploited, FBI warns

Zero-Day flaw in FatPipe products actively exploited, FBI warns

The FBI is warning of a zero-day vulnerability in FatPipe products that has been under active exploitation since at least…

3 years ago
Phishing campaign targets Tiktok influencer accountsPhishing campaign targets Tiktok influencer accounts

Phishing campaign targets Tiktok influencer accounts

Threat actors have launched a phishing campaign targeting more than 125 TikTok ‘Influencer’ accounts in an attempt to hijack them.…

3 years ago
US, UK and Australia warn of Iran-linked APTs exploiting Fortinet, Microsoft Exchange flawsUS, UK and Australia warn of Iran-linked APTs exploiting Fortinet, Microsoft Exchange flaws

US, UK and Australia warn of Iran-linked APTs exploiting Fortinet, Microsoft Exchange flaws

U.S., U.K. and Australia warn that Iran-linked APT groups exploiting Fortinet and Microsoft Exchange flaws to target critical infrastructure. A…

3 years ago
Netgear fixes code execution flaw in many SOHO devicesNetgear fixes code execution flaw in many SOHO devices

Netgear fixes code execution flaw in many SOHO devices

Netgear addressed a code execution vulnerability, tracked as CVE-2021-34991, in its small office/home office (SOHO) devices. Netgear addressed a pre-authentication…

3 years ago
CISA releases incident response plans for federal agenciesCISA releases incident response plans for federal agencies

CISA releases incident response plans for federal agencies

CISA released the Federal Government Cybersecurity Incident Response Playbooks for the federal civilian executive branch agencies. The Cybersecurity and Infrastructure Security…

3 years ago
The rise of millionaire zero-day exploit marketsThe rise of millionaire zero-day exploit markets

The rise of millionaire zero-day exploit markets

Researchers detailed the multi-millionaire market of zero-day exploits, a parallel economy that is fueling the threat landscape. Zero-day exploits are…

3 years ago
Iran-linked APT groups continue to evolveIran-linked APT groups continue to evolve

Iran-linked APT groups continue to evolve

The researchers at Microsoft Threat Intelligence Center (MSTIC) are warning of increasingly sophisticated operations carried out by Iranian threat actors.…

3 years ago
Mandiant links Ghostwriter operations to BelarusMandiant links Ghostwriter operations to Belarus

Mandiant links Ghostwriter operations to Belarus

Security researchers at the Mandiant Threat Intelligence team believe that Ghostwriter APT group is linked to the government of Belarus.…

3 years ago