Volkswagen Data Breach: 800,000 Electric Car Owners’ Data Leaked

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Volkswagen has inadvertently exposed the personal information of 800,000 electric vehicle owners, including their location data and contact details. The breach, which occurred due to a misconfiguration in the systems of Cariad, VW’s software subsidiary, left sensitive data stored on …

Cyberhaven Chrome Extension Hacked to Inject Malicious Scripts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cyberhaven, a leading provider of data loss prevention (DLP) solutions, disclosed a significant security breach involving its Chrome extension. On December 24, 2024, a targeted cyberattack compromised an administrator account, allowing attackers to publish a malicious update (version 24.10.4) to …

Palo Alto Networks Firewall Vulnerability “CVE-2024-3393” Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Palo Alto Networks has disclosed a high-severity vulnerability, CVE-2024-3393, in its PAN-OS software that powers its next-generation firewalls. The flaw allows unauthenticated attackers to exploit the DNS Security feature by sending specially crafted DNS packets, triggering a Denial of Service …

D-Link Routers Under Attack – Botnet Exploiting Devices to Gain Full Remote Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A surge in cyberattacks leveraging legacy vulnerabilities in D-Link routers has been detected, with two botnets, FICORA and CAPSAICIN, actively exploiting these weaknesses. Researchers at Fortinet’s FortiGuard Labs observed a spike in activity from these botnets during October and November …

ChatGPT Services Including API & Sora Down Globally

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

OpenAI’s flagship AI service, ChatGPT, along with its associated services like the API and Sora, experienced a significant global outage, leaving millions of users unable to access these tools. The disruption began at approximately 11 a.m. PT, with OpenAI quickly …

Crypto Hacking in 2024 – $2.2 Billion Stolen, North Korean Hackers Behind 61% of Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cryptocurrency industry faced another challenging year in 2024, as hacking incidents reached new heights, with $2.2 billion in digital assets stolen. This marks a 21.07% year-over-year (YoY) increase, reinforcing concerns about the vulnerabilities of the rapidly growing sector. Crypto …

Top 5 Notable Cyber Attacks in December 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity research team at ANY.RUN, leveraging their Interactive Sandbox and Threat Intelligence Lookup tools, has uncovered and analyzed a range of emerging threats throughout December 2024. The team highlighted fascinating trends and vital insights into the evolving threat landscape …

Apache MINA Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new critical vulnerability (CVE-2024-52046) has been discovered in Apache MINA, potentially allowing attackers to execute remote code by exploiting insecure deserialization processes. This flaw affects multiple versions of the popular networking library, raising significant security concerns. The Vulnerability Explained …

Dell SupportAssist Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly disclosed high-impact vulnerability in Dell’s widely used SupportAssist software could allow attackers to escalate privileges on affected systems. Identified as CVE-2024-52535, the vulnerability has raised significant concern among cybersecurity experts and end-users, given its potential to compromise system integrity …

IBM AIX Vulnerability Let Attackers Trigger DoS Condition

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

IBM has reported vulnerabilities in its AIX operating system that could allow attackers to cause a Denial of Service (DoS) condition. The identified vulnerabilities affect specific kernel extensions, potentially disrupting normal system operations. Details of the Vulnerabilities: IBM AIX is …