Microsoft Dataverse Authentication Flaw Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability in Microsoft Dataverse has been discovered, allowing authorized attackers to elevate their privileges over a network. The flaw, identified as CVE-2024-38139, has a high severity rating with a CVSS base score of 8.7, indicating its potential …

Chrome 130 Released with Fix for 17 Security Flaws

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has released Chrome 130, addressing 17 security vulnerabilities in the popular web browser. This latest update, version 130.0.6723.58/.59 for Windows and Mac and 130.0.6723.58 for Linux is being rolled out gradually to users over the coming days and weeks. …

Why Traditional Correlation Rules Aren’t Enough for Your SIEM – SOC Guide

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

If you’re managing an SIEM (Security Information and Event Management) system, you know how vital centralized threat detection is. SIEM collects and analyzes data from multiple sources—your firewalls, applications, servers—and looks for patterns that could be a security threat. But …

Threat Actors Abuse Genuine Code-Signing Certificates To Evade Detections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A code signing certificate is a digital certificate that allows software developers to sign their applications. This ensures both the “authenticity of the publisher” and the “integrity of the code.”HarfangLab researchers recently discovered that threat actors have been actively abusing …

Hackers Abuse EDRSilencer Red Team Tool To Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

EDRSilencer is a tool designed to enhance data privacy and security by “silencing” or “blocking” unwanted data transmissions from endpoints. The tool is likely used in conjunction with EDR systems to improve overall cybersecurity measures and also provide an additional …

Threat Actors Hacking 3 To 5 Websites Per Hour Exploiting CosmicSting Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a disturbing development for e-commerce security, cybersecurity experts have revealed that threat actors are actively exploiting the CosmicSting vulnerability (CVE-2024-34102) to compromise 3 to 5 websites per hour. This critical security flaw, which affects Adobe Commerce and Magento platforms, …

Leeds Equity Partners Acquires Cybersecurity Training Firm OffSec

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Leeds Equity Partners (“Leeds Equity”) announced today that it has acquired OffSec (the “Company”), the leading provider of continuous cybersecurity workforce development training and professional education for cybersecurity practitioners from Spectrum Equity. Terms of the transaction were not disclosed. OffSec …

Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a sophisticated malware campaign exploiting Bitbucket, a popular code hosting platform, to deliver dangerous payloads to unsuspecting victims. The attackers are leveraging Bitbucket’s legitimate reputation to host and distribute various types of malware, including remote access …

SideWinder APT Hackers Added New Post-Exploitation Toolkit to Their Arsenal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers at Kaspersky have uncovered a significant expansion in the capabilities of the SideWinder advanced persistent threat (APT) group. In a report published on October 15, 2024, the Kaspersky that SideWinder has developed a new post-exploitation toolkit called “StealerBot” …

ExoneraTor Tool Detects IP Address Linked With Tor Network, Uncovers Volt Typhoon

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Volt Typhoon is a Chinese state-sponsored hacking group that has been active since at least mid-2021, targeting critical infrastructure sectors in the United States and its territories. The group employs sophisticated techniques to infiltrate networks by using “compromised routers” and …