Featured

Android Zero-Day Patched With September 2023 Security Updates 

Android Zero-Day Patched With September 2023 Security Updates  06/09/2023 at 15:34 By Ionut Arghire Android’s September 2023 security update resolves a high-severity elevation of privilege vulnerability exploited in malicious attacks. The post Android Zero-Day Patched With September 2023 Security Updates  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original […]

Android Zero-Day Patched With September 2023 Security Updates  Read More »

Okta Says US Customers Targeted in Sophisticated Attacks

Okta Says US Customers Targeted in Sophisticated Attacks 05/09/2023 at 17:02 By Eduard Kovacs Okta says some of its US-based customers have been targeted in social engineering attacks whose goal was to disable MFA and obtain high privileges. The post Okta Says US Customers Targeted in Sophisticated Attacks appeared first on SecurityWeek. This article is

Okta Says US Customers Targeted in Sophisticated Attacks Read More »

Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices

Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices 31/08/2023 at 15:46 By Eduard Kovacs Five Eyes report details ‘Infamous Chisel’ malware used by Russian state-sponsored hackers to target the Ukrainian military’s Android devices.  The post Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices appeared first on SecurityWeek. This article

Five Eyes Report: New Russian Malware Targeting Ukrainian Military Android Devices Read More »

BGP Flaw Can Be Exploited for Prolonged Internet Outages

BGP Flaw Can Be Exploited for Prolonged Internet Outages 30/08/2023 at 15:31 By Eduard Kovacs Serious flaw affecting major BGP implementations can be exploited to cause prolonged internet outages, but several vendors have not patched it.  The post BGP Flaw Can Be Exploited for Prolonged Internet Outages appeared first on SecurityWeek. This article is an

BGP Flaw Can Be Exploited for Prolonged Internet Outages Read More »

3 Cryptocurrency Firms Suffer Data Breach After Kroll SIM Swapping Attack

3 Cryptocurrency Firms Suffer Data Breach After Kroll SIM Swapping Attack 28/08/2023 at 12:15 By Eduard Kovacs Three bankrupt cryptocurrency companies — FTX, BlockFi and Genesis — suffered data breaches following a SIM swapping attack at Kroll.  The post 3 Cryptocurrency Firms Suffer Data Breach After Kroll SIM Swapping Attack appeared first on SecurityWeek. This

3 Cryptocurrency Firms Suffer Data Breach After Kroll SIM Swapping Attack Read More »

Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick?

Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick? 23/08/2023 at 19:18 By Kevin Townsend As smart cities evolve with more and more integrated connected services, cybersecurity concerns will increase dramatically. The post Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick? appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Smart Cities: Utopian Dream, Security Nightmare, or Political Gimmick? Read More »

Cybersecurity Companies Report Surge in Ransomware Attacks

Cybersecurity Companies Report Surge in Ransomware Attacks 23/08/2023 at 19:18 By Eduard Kovacs Cybersecurity companies have released a dozen ransomware reports in recent weeks and most of them show a surge in attacks. The post Cybersecurity Companies Report Surge in Ransomware Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Cybersecurity Companies Report Surge in Ransomware Attacks Read More »

Exploitation of Ivanti Sentry Zero-Day Confirmed

Exploitation of Ivanti Sentry Zero-Day Confirmed 23/08/2023 at 12:17 By Eduard Kovacs While initially it was unclear if the Ivanti Sentry vulnerability CVE-2023-38035 has been exploited, the vendor and CISA have now confirmed it. The post Exploitation of Ivanti Sentry Zero-Day Confirmed appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Exploitation of Ivanti Sentry Zero-Day Confirmed Read More »

CISA Warns of Another Exploited Adobe ColdFusion Vulnerability

CISA Warns of Another Exploited Adobe ColdFusion Vulnerability 22/08/2023 at 13:47 By Eduard Kovacs CISA warns that CVE-2023-26359, an Adobe ColdFusion vulnerability patched in March, has been exploited in the wild. The post CISA Warns of Another Exploited Adobe ColdFusion Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

CISA Warns of Another Exploited Adobe ColdFusion Vulnerability Read More »

Exploitation of Citrix ShareFile Vulnerability Spikes as CISA Issues Warning 

Exploitation of Citrix ShareFile Vulnerability Spikes as CISA Issues Warning  17/08/2023 at 12:18 By Eduard Kovacs Exploitation of a Citrix ShareFile vulnerability tracked as CVE-2023-24489 has spiked as CISA added it to its ‘must patch’ catalog. The post Exploitation of Citrix ShareFile Vulnerability Spikes as CISA Issues Warning  appeared first on SecurityWeek. This article is

Exploitation of Citrix ShareFile Vulnerability Spikes as CISA Issues Warning  Read More »

CISO Conversations: CISOs in Cloud-based Services Discuss the Process of Leadership

CISO Conversations: CISOs in Cloud-based Services Discuss the Process of Leadership 15/08/2023 at 16:31 By Kevin Townsend SecurityWeek talks to Billy Spears, CISO at Teradata (a multi-cloud analytics provider), and Lea Kissner, CISO at cloud security firm Lacework. The post CISO Conversations: CISOs in Cloud-based Services Discuss the Process of Leadership appeared first on SecurityWeek.

CISO Conversations: CISOs in Cloud-based Services Discuss the Process of Leadership Read More »

Iagona ScrutisWeb Vulnerabilities Could Expose ATMs to Remote Hacking

Iagona ScrutisWeb Vulnerabilities Could Expose ATMs to Remote Hacking 14/08/2023 at 13:46 By Eduard Kovacs Several vulnerabilities discovered in Iagona ScrutisWeb ATM fleet monitoring software could be exploited to remotely hack ATMs. The post Iagona ScrutisWeb Vulnerabilities Could Expose ATMs to Remote Hacking appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

Iagona ScrutisWeb Vulnerabilities Could Expose ATMs to Remote Hacking Read More »

CISA Warns Organizations of Exploited Vulnerability Affecting .NET, Visual Studio 

CISA Warns Organizations of Exploited Vulnerability Affecting .NET, Visual Studio  10/08/2023 at 12:33 By Eduard Kovacs CISA has added CVE-2023-38180, a zero-day vulnerability affecting .NET and Visual Studio, to its Known Exploited Vulnerabilities Catalog. The post CISA Warns Organizations of Exploited Vulnerability Affecting .NET, Visual Studio  appeared first on SecurityWeek. This article is an excerpt

CISA Warns Organizations of Exploited Vulnerability Affecting .NET, Visual Studio  Read More »

Downfall: New Intel CPU Attack Exposing Sensitive Information

Downfall: New Intel CPU Attack Exposing Sensitive Information 09/08/2023 at 09:32 By Eduard Kovacs Google researcher discloses the details of an Intel CPU attack method named Downfall that may be remotely exploitable. The post Downfall: New Intel CPU Attack Exposing Sensitive Information appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Downfall: New Intel CPU Attack Exposing Sensitive Information Read More »

North Korean Hackers Targeted Russian Missile Developer

North Korean Hackers Targeted Russian Missile Developer 07/08/2023 at 20:01 By Eduard Kovacs A sanctioned Russian missile maker appears to have been targeted by two important North Korean hacking groups. The post North Korean Hackers Targeted Russian Missile Developer appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

North Korean Hackers Targeted Russian Missile Developer Read More »

Five Eyes Agencies Call Attention to Most Frequently Exploited Vulnerabilities

Five Eyes Agencies Call Attention to Most Frequently Exploited Vulnerabilities 04/08/2023 at 12:31 By Ionut Arghire Five Eyes government agencies have published a list of the software vulnerabilities that were most frequently exploited in malicious attacks in 2022. The post Five Eyes Agencies Call Attention to Most Frequently Exploited Vulnerabilities appeared first on SecurityWeek. This

Five Eyes Agencies Call Attention to Most Frequently Exploited Vulnerabilities Read More »

Salesforce Email Service Zero-Day Exploited in Phishing Campaign

Salesforce Email Service Zero-Day Exploited in Phishing Campaign 03/08/2023 at 12:47 By Eduard Kovacs Threat actors have exploited a Salesforce email service zero-day vulnerability and abused Meta features in a sophisticated phishing campaign. The post Salesforce Email Service Zero-Day Exploited in Phishing Campaign appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

Salesforce Email Service Zero-Day Exploited in Phishing Campaign Read More »

Microsoft Catches Russian Government Hackers Phishing with Teams Chat App

Microsoft Catches Russian Government Hackers Phishing with Teams Chat App 03/08/2023 at 01:01 By Ryan Naraine Microsoft says a Russian government-linked hacking group is using its Microsoft Teams chat app to phish for credentials at targeted organizations. The post Microsoft Catches Russian Government Hackers Phishing with Teams Chat App appeared first on SecurityWeek. This article

Microsoft Catches Russian Government Hackers Phishing with Teams Chat App Read More »

Scroll to Top