Code faster and work smarter with a Microsoft Visual Studio Professional 2022 license, currently on sale for $35. This article has been indexed from Latest news Read the original article: Get a Microsoft Visual Studio Pro license for 92% off
Read more →
https://www.itsecuritynews.info/get-a-microsoft-visual-studio-pro-license-for-92-off/?utm_source=dlvr.it&utm_medium=blogger
Saturday, July 13, 2024
Critical Exim Mali Server Vulnerability Impacts 1.5 Million Email Servers
According to recent findings by security researchers, more than 1.5 million email servers are currently vulnerable to a critical security flaw in the Exim mail transfer agent (MTA). Exim is a free, mail transfer agent that’s used in hosts that are running Unix or Unix-like operating systems. It was first released in 1995 for use […]
The post Critical Exim Mali Server Vulnerability Impacts 1.5 Million Email Servers appeared first on Cyber Security News.
https://cybersecuritynews.com/exim-mali-server-vulnerability/?utm_source=dlvr.it&utm_medium=blogger
The post Critical Exim Mali Server Vulnerability Impacts 1.5 Million Email Servers appeared first on Cyber Security News.
https://cybersecuritynews.com/exim-mali-server-vulnerability/?utm_source=dlvr.it&utm_medium=blogger
AT&T Massive Data Breach – Affecting Nearly All Customers’ Call & Text Records
AT&T, one of the largest telecommunications companies in the United States, has disclosed a significant data breach that exposed the call and text records of nearly all its cellular customers. The company revealed this information in a regulatory filing on July 12, 2024. The breach, which occurred between April 14 and April 25, 2024, involved […]
The post AT&T Massive Data Breach – Affecting Nearly All Customers’ Call & Text Records appeared first on Cyber Security News.
https://cybersecuritynews.com/att-reveals-massive-data-breach/?utm_source=dlvr.it&utm_medium=blogger
The post AT&T Massive Data Breach – Affecting Nearly All Customers’ Call & Text Records appeared first on Cyber Security News.
https://cybersecuritynews.com/att-reveals-massive-data-breach/?utm_source=dlvr.it&utm_medium=blogger
Friday, July 12, 2024
FishXProxy Fuels Phishing Attacks with Clever Deceptive Attacks
Imagine receiving an email that looks legitimate, down to the last detail. This is the deceptive power of the new FishXProxy Phishing Kit, a sophisticated toolkit emerging from underground cybercrime. With its advanced features, FishXProxy dismantles the technical barriers traditionally associated with phishing campaigns, making it alarmingly simple for attackers to deceive and exploit unsuspecting […]
The post FishXProxy Fuels Phishing Attacks with Clever Deceptive Attacks appeared first on Cyber Security News.
https://cybersecuritynews.com/fishxproxy-fuels-phishing-attacks/?utm_source=dlvr.it&utm_medium=blogger
The post FishXProxy Fuels Phishing Attacks with Clever Deceptive Attacks appeared first on Cyber Security News.
https://cybersecuritynews.com/fishxproxy-fuels-phishing-attacks/?utm_source=dlvr.it&utm_medium=blogger
4000+ Domains Used By FIN7 Actors Mimic Popular Brands
Russian-linked FIN7 (aka Sangria Tempest, ATK32, Carbon Spider, Coreid, ELBRUS, G0008, G0046, and GOLD NIAGARA) is a financial cybercrime group that has been around since 2013 and it specifically targets the US industries. To achieve this goal, it uses spearphishing, ransomware, malicious browser extensions, and drive-by compromises. Even after repeated attempts to bring them down, […]
The post 4000+ Domains Used By FIN7 Actors Mimic Popular Brands appeared first on Cyber Security News.
https://cybersecuritynews.com/fin7-domains-mimic-brands-uncovered/?utm_source=dlvr.it&utm_medium=blogger
The post 4000+ Domains Used By FIN7 Actors Mimic Popular Brands appeared first on Cyber Security News.
https://cybersecuritynews.com/fin7-domains-mimic-brands-uncovered/?utm_source=dlvr.it&utm_medium=blogger
China’s APT41 crew adds a stealthy malware loader and fresh backdoor to its toolbox
Meet DodgeBox, son of StealthVector Chinese government-backed cyber espionage gang APT41 has very likely added a loader dubbed DodgeBox and a backdoor named MoonWalk to its malware toolbox, according to cloud security service provider Zscaler’s ThreatLabz research team.… This article…
Read more →
https://www.itsecuritynews.info/chinas-apt41-crew-adds-a-stealthy-malware-loader-and-fresh-backdoor-to-its-toolbox/?utm_source=dlvr.it&utm_medium=blogger
Read more →
https://www.itsecuritynews.info/chinas-apt41-crew-adds-a-stealthy-malware-loader-and-fresh-backdoor-to-its-toolbox/?utm_source=dlvr.it&utm_medium=blogger
Palo Alto Networks Patches Critical Flaw in Expedition Migration Tool
Palo Alto Networks has released security updates to address five security flaws impacting its products, including a critical bug that could lead to an authentication bypass.
Cataloged as CVE-2024-5910 (CVSS score: 9.3), the vulnerability has been described as a case of missing authentication in its Expedition migration tool that could lead to an admin account takeover.
"Missing authentication
https://thehackernews.com/2024/07/palo-alto-networks-patches-critical.html?utm_source=dlvr.it&utm_medium=blogger
Cataloged as CVE-2024-5910 (CVSS score: 9.3), the vulnerability has been described as a case of missing authentication in its Expedition migration tool that could lead to an admin account takeover.
"Missing authentication
https://thehackernews.com/2024/07/palo-alto-networks-patches-critical.html?utm_source=dlvr.it&utm_medium=blogger
60 New Malicious Packages Uncovered in NuGet Supply Chain Attack
Threat actors have been observed publishing a new wave of malicious packages to the NuGet package manager as part of an ongoing campaign that began in August 2023, while also adding a new layer of stealth to evade detection.
The fresh packages, about 60 in number and spanning 290 versions, demonstrate a refined approach from the previous set that came to light in October 2023, software supply
https://thehackernews.com/2024/07/60-new-malicious-packages-uncovered-in.html?utm_source=dlvr.it&utm_medium=blogger
The fresh packages, about 60 in number and spanning 290 versions, demonstrate a refined approach from the previous set that came to light in October 2023, software supply
https://thehackernews.com/2024/07/60-new-malicious-packages-uncovered-in.html?utm_source=dlvr.it&utm_medium=blogger
Thursday, July 11, 2024
CISA Warns of Hackers Exploiting OS Command Injection Vulnerabilities
The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have raised alarms about hackers exploiting OS command injection vulnerabilities. These vulnerabilities, a constant issue in software products, pose essential risks to users and organizations. The alert comes in response to recent threat actor campaigns that have successfully targeted and compromised […]
The post CISA Warns of Hackers Exploiting OS Command Injection Vulnerabilities appeared first on Cyber Security News.
https://cybersecuritynews.com/cisa-warns-of-hackers-exploiting-os-command-injection/?utm_source=dlvr.it&utm_medium=blogger
The post CISA Warns of Hackers Exploiting OS Command Injection Vulnerabilities appeared first on Cyber Security News.
https://cybersecuritynews.com/cisa-warns-of-hackers-exploiting-os-command-injection/?utm_source=dlvr.it&utm_medium=blogger
ViperSoftX Malware Disguises as eBooks on Torrents to Spread Stealthy Attacks
The sophisticated malware known as ViperSoftX has been observed being distributed as eBooks over torrents.
"A notable aspect of the current variant of ViperSoftX is that it uses the Common Language Runtime (CLR) to dynamically load and run PowerShell commands, thereby creating a PowerShell environment within AutoIt for operations," Trellix security researchers Mathanraj Thangaraju and Sijo Jacob
https://thehackernews.com/2024/07/vipersoftx-malware-disguises-as-ebooks.html?utm_source=dlvr.it&utm_medium=blogger
"A notable aspect of the current variant of ViperSoftX is that it uses the Common Language Runtime (CLR) to dynamically load and run PowerShell commands, thereby creating a PowerShell environment within AutoIt for operations," Trellix security researchers Mathanraj Thangaraju and Sijo Jacob
https://thehackernews.com/2024/07/vipersoftx-malware-disguises-as-ebooks.html?utm_source=dlvr.it&utm_medium=blogger
Subscribe to:
Posts (Atom)







.webp)
