ANY.RUN Sandbox Now Let Analysts Automatically Analyse Complex Cyber Attack Chains

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ANY.RUN announced the launch of Smart Content Analysis, an advanced mechanism within its Automated Interactivity feature that enables the service to automatically detonate complex malware and phishing attacks, helping users speed up their investigations and gain in-depth insights into malicious …

What is Domain-Based Message Authentication, Reporting & Conformance(DMARC)?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Email remains one of the most critical forms of communication for businesses, individuals, and organizations around the world. However, it also presents a major attack vector for cybercriminals, who use various techniques such as phishing, spoofing, and other email-based attacks …

Microsoft Ignite New 360-Degree Details Attacker Tooling and Methodology

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Security Copilot team unveiled groundbreaking advancements at the recent Microsoft Ignite 2024 conference that redefine the threat intelligence experience for organizations worldwide. With a focus on enhanced capabilities, Security Copilot now empowers users with a comprehensive ‘360-degree’ view of …

Gabagool Leveraging Cloudflare’s R2 Storage Service To Bypass Security Filters

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign dubbed “Gabagool” that targets corporate and government employees has been uncovered recently by the TRAC Labs team. This campaign exploits Cloudflare’s R2 storage service to host malicious content, leveraging Cloudflare’s trusted reputation to evade security filters. …

Trend Micro Deep Security Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Trend Micro has disclosed a critical vulnerability in its Deep Security 20 Agent software that could potentially allow attackers to execute remote code on affected systems. The vulnerability was identified as “CVE-2024-51503,” was discovered on November 18, 2024, and has …

XenoRAT Weaponizes Excel XLL Files To Evade Protection Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new attack vector utilizing XenoRAT has been uncovered recently, it’s an open-source remote access tool, delivered through Excel XLL files. This sophisticated approach demonstrates the evolving tactics of threat actors to bypass security measures and infiltrate systems. Hunt researchers …

Oracle Agile PLM Zero-Day Vulnerability Exploited In The Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Oracle has issued an urgent security alert regarding a critical vulnerability in its Agile Product Lifecycle Management (PLM) Framework that is actively being exploited in the wild. The vulnerability, tracked as CVE-2024-21287, allows unauthenticated attackers to access and download sensitive …

Atlassian Sourcetree For Mac & Windows Flaw Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been discovered in Atlassian’s popular version control client, Sourcetree, affecting both Mac and Windows versions. The flaw, identified as CVE-2024-21697, allows unauthenticated attackers to execute arbitrary code remotely, posing a significant risk to users. The …

Chrome Security Update, Fix For Multiple Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has rolled out a crucial security update for its Chrome browser, addressing multiple vulnerabilities that could potentially compromise user safety. The latest update, version 131.0.6778.85/.86 for Windows and Mac, and 131.0.6778.85 for Linux, is set to be distributed gradually …

Apple Security Update, Patch for Multiple Zero-Day Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple has issued an important security update for macOS Sequoia 15.1.1, addressing several zero-day vulnerabilities that have been actively exploited in the wild. These patches protect Apple users, particularly those with Intel-based Mac systems, from potential security breaches. The update …