Multiple Splunk Enterprise Vulnerabilities Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Splunk has released patches for several high-severity vulnerabilities in its Enterprise product that could allow attackers to execute remote code on affected systems. The vulnerabilities impact multiple versions of Splunk Enterprise and Splunk Cloud Platform. One of the most critical …

New Supply Chain Attack Leveraging Entry Points in PyPI, npm, Ruby Gems & NuGet

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated supply chain attack has been identified, leveraging entry points in popular open-source package repositories, including PyPI (Python), npm (JavaScript), Ruby Gems, and NuGet (.NET). This attack vector poses significant risks to both individual developers and enterprises, highlighting the …

CoreWarrior Malware Attacking Windows Machines With Self-replication Capabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Malware targeting Windows machines continues to be a significant threat. While these threats could be in various forms like viruses, worms, and ransomware. These malicious programs can infiltrate systems via illicit methods like “phishing emails,” “infected downloads,” and “vulnerabilities.” Cybersecurity …

OilRig Hackers Exploiting Microsoft Exchange Servers To Steal Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OilRig hackers (aka Earth Simnavaz, APT34, OilRig) is a cyber espionage group that was linked to “Iranian” interests. This APT group primarily targets energy, governmental, and critical infrastructure sectors. Cybersecurity researchers at Trend Micro recently discovered that OilRig hackers have …

Popular Java Framework pac4j Vulnerable To RCE Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been identified in the popular Java security framework, pac4j, specifically affecting versions prior to 4.0. This vulnerability tracked as CVE-2023-25581, allows for remote code execution (RCE), posing a significant risk to systems using the affected …

TrickMo Malware Attacking Android Devices To Steal Unlock Patterns & PINs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

TrickMo is a sophisticated malware that emerged as a “banking Trojan”, and this malware is designed to steal “financial credentials” and “personal information.” Besides this, it has a history of targeting Android devices to facilitate financial fraud by stealing OTPs …

Gmail Users Beware Of AI Scam that Takeovers Your Gmail Account

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated new scam targeting Gmail users has emerged, using artificial intelligence to trick victims into surrendering control of their accounts. This “super realistic AI scam call” combines fake account recovery notifications, spoofed phone numbers, and convincing AI-generated voices to …

Hackers Selling ProKYC Tools To Bypass Two-Factor Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

2FA enhances security by requiring two distinct forms of identification before granting access to an account or service. Though 2FA reduces the risk of unauthorized access, it’s not completely error-free. Recently, the security researchers at Cato CTRL identified that the …

Apache Roller CSRF Vulnerability Let Attackers Escalate privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Apache Roller team revealed a critical security update addressing a Cross-Site Request Forgery (CSRF) vulnerability that could allow attackers to escalate privileges. This vulnerability, present in previous versions of Apache Roller, posed significant risks by potentially enabling unauthorized users …

North Korean Posing as Recruiters to Attack Job Seekers Device

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers target job seekers primarily for financial gain and to obtain sensitive personal information.  Many job seekers are vulnerable due to their enthusiasm for finding employment, which exposes them to phishing scams and fake job postings. Cybersecurity analysts at Palo …