Windows Zero-days & Firefox Vulnerability Exploited by RomCom Hackers Group

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Russian-aligned hacking group RomCom has been discovered exploiting two critical zero-day vulnerabilities affecting Mozilla Firefox and Windows systems in a sophisticated cyber-espionage campaign. The vulnerabilities allowed attackers to execute malicious code on victims’ computers without any user interaction. The first …

Hackers Weaponizing Typosquatted Libraries To Inject SSH Backdoors

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated attack targeting npm users has been recently uncovered by the Socket’s threat research team in a concerning development for the open-source community. The threat actor, identified as “sanchezjosephine180,” has published six malicious npm packages designed to mimic popular …

Kansas City Man Charged for Hacking Computer Systems of Health Clubs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A 31-year-old Kansas City man has been indicted on federal charges for allegedly hacking into the computer systems of a health club chain and a nonprofit organization. Nicholas Michael Kloster faces two counts related to unauthorized computer access and causing …

Palo Alto certification validation Flaw Let Attackers Escalate Privilege

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant security vulnerability has been discovered in Palo Alto Networks’ GlobalProtect app, potentially allowing attackers to escalate privileges on affected systems. The flaw, which stems from insufficient certification validation, enables malicious actors to connect the GlobalProtect app to arbitrary …

WordPress Plugin Flaw Exposes 200,000 WordPress Sites To Hacking

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability was discovered on October 30th, 2024 in the Anti-Spam by CleanTalk WordPress plugin, potentially affecting over 200,000 active installations. This flaw allows unauthenticated attackers to install and activate arbitrary plugins, which could lead to remote code execution …

CISA Details Red Team’s Activity Including TTPs & Network Defense

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A comprehensive Red Team Assessment (RTA) was conducted recently by the Cybersecurity and Infrastructure Security Agency (CISA) on a critical infrastructure organization in the United States. This assessment, which spanned approximately three months, aimed to evaluate the organization’s cybersecurity detection …

7 New Flaws In Android & Google Pixel Devices Let Attackers Elevate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Seven critical vulnerabilities affecting Android and Google Pixel devices were recently uncovered during a recent analysis of mobile applications. These security flaws, discovered through the Oversecured Mobile Application Vulnerability Scanner, pose significant risks to user privacy and device security. The …

Starbucks Hit by Ransomware Attack Via Third-party Software Supplier

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A ransomware attack on Blue Yonder, a critical supply chain management software provider, has forced Starbucks to revert to manual processes for managing employee schedules and payroll systems. The incident, which began on November 21, 2024, has not affected customer …

Hackers Abuse Avast Anti-Rootkit driver To Evade Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A malicious campaign has been discovered in which the malware employs a more nefarious tactic, dropping the legitimate Avast Anti-Rootkit driver (aswArPot.sys) to evade detection. The malware takes advantage of the driver’s deep access to stop security processes, turn off …

What is Denial of Service(DoS) Attack?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The rapid growth of the internet and connected systems has revolutionized the way we communicate, work, and live. However, this increased connectivity has also exposed vulnerabilities that malicious actors can exploit. One of the most common and disruptive forms of …