According to recent research from VMware, emotet delivery and evasion techniques used in recent attacks revealed, threat actors linked to the infamous Emotet virus are constantly changing their strategies. And command-and-control (C2) infrastructure to avoid detection. The threat actor known…
Latest posts - Page 36
Fortinet claims that attacks take use of a serious auth bypass issue.
A critical auth bypass security flaw was patched last week. But it is still being used in the field, according to Fortinet’s confirmation today. The security weakness (CVE-2022-40684) allows remote threat actors to access FortiGate firewalls and FortiProxy web proxies.…
Cyber Attack Suspected in Hartnell College Network Outage
Cyber attack suspected in Hartnell college on its network early on Sunday morning. The public community college in California shut down its servers. It is now slowly bringing the network back online. (TNS) — In response to a potential cybersecurity…
Hackers Using Zimbra Collaboration Suite’s Unpatched RCE Flaw
There is currently no patch available to fix a serious remote code execution vulnerability(RCE Flaw) in the enterprise collaboration software and email platform provided by Zimbra. The flaw, designated CVE-2022-41352, carries a critical-severity rating of CVSS 9.8, giving attackers a…
The Boeing 737 MAX disaster demonstrates that you can no longer avoid culpability due to improperly written code.
There are a few occasions in situational law where a single landmark ruling reshapes or reframes the legal environment. That is exactly what happened at the conclusion of the previous year, and everybody involved in programme growth has to take…
FortiGate and FortiProxy Have a New Auth Bypass Flaw, According to Fortinet
A security weakness affecting FortiGate firewalls and FortiProxy web proxies. These proxies can allow an attacker to carry out unauthorized actions on vulnerable systems(Auth Bypass Flaw). It has been confidentially disclosed by Fortinet to its customers. The high-severity bug, identified…
A serious open source flaw WebPageTest is still not patched.
After a talk, a blog post, and public publication, the RCE exploit is still open for discussion. The maintainers of the WebPageTest project seem to be ignoring a serious remote code execution (RCE) vulnerability, despite a researcher’s best efforts at…
Police in Australia accuses a teenager of extorting Optus victims.
An alleged 19-year-old from the Sydney suburbs sent extortion SMS messages to Optus data breach victims. A juvenile threatened to blackmail victims whose data was released online in an attempt. For getting profit from the significant data breach at a…
New LilithBot malware is being offered as a service to cybercriminals by Eternity Group hackers.
LilithBot malware, has been connected to the threat actor responsible for the malware-as-a-service (MaaS) named Eternity. Researchers Shatak Jain and Aditya Sharma from Zscaler ThreatLabz stated in a paper released on Wednesday that malware has a sophisticated ability to be…
Numerous Microsoft SQL servers have been discovered to have backdoors
A backdoor that targets Microsoft SQL servers especially was recently discovered by DCSO CyTec researchers. Extended Stored Procedures, a unique class of extension utilized by Microsoft SQL servers, are how the malware operates. They scanned almost 600,000 servers throughout the…