Akira Ransomware Actors Developing Rust Variant To Attack ESXi Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Akira Ransomware Actors are Developing a Rust Variant to Attack ESXi servers. First identified in March 2023, it targets both Windows and Linux systems. It is first identified in March 2023, targets both “Windows” and “Linux” systems. It employs a …

Callback Phishing Attacks Using Google Groups To Steal Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Phishing attacks are deceptive schemes where attackers impersonate reputable entities to trick individuals into revealing “sensitive information.” These attacks often occur via email using urgent language to prompt victims to click on “malicious links” or “download harmful attachments.” Trustwave cybersecurity …

Hackers Registered 1,000+ New Malicious Domains Targeting US Elections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered over 1,000 newly registered malicious domains designed to exploit public interest in the upcoming vote. This surge in potentially harmful websites poses significant risks to voter information security and the integrity of the electoral process. Leading …

Critical OneDev DevOps Platform Vulnerability Let Attacker Read Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been identified in the OneDev DevOps platform, posing significant security risks to organizations relying on this tool for their software development and deployment processes. The issue, tracked as CVE-2024-45309, affects versions of OneDev before 11.0.9. OneDev …

Hackers Exploiting Exposed Docker Remote API Servers With perfctl Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly targeting exposed Docker Remote API servers to deploy the perfctl malware, posing significant threats to organizations relying on containerized environments. These attacks involve a structured probing sequence, container creation, and payload execution, exploiting vulnerabilities in Docker configurations. …

CISA Adds Sciencelogic SL1 Unspecified Vulnerability to KEV Catalog

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has recently added a critical security vulnerability affecting ScienceLogic SL1 to its Known Exploited Vulnerabilities (KEV) catalog following reports of active exploitation in the wild. This addition underscores the urgent need for organizations to address this vulnerability promptly to …

Windows Remote Registry Client EoP Flaw Exposes Systems to Relay Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical elevation of privilege (EoP) vulnerability, identified as CVE-2024-43532, has been discovered in the Windows Remote Registry client. This vulnerability potentially allows attackers to relay NTLM authentication and gain unauthorized access to Windows systems. It carries a high CVSS …

Crypto Payment Firm Transak Hit by Data Breach After Employee’s Laptop Hack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Transak, a leading crypto payment services provider, has been affected by a significant data breach that affected over 92,000 users. The incident, which came to light on October 21, 2024, stemmed from a sophisticated phishing attack that compromised an employee’s …

Sophos Acquires Secureworks in $859 Million Deal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a significant move that is set to reshape the cybersecurity landscape, Sophos has announced its acquisition of SecureWorks for $859 million. The all-cash deal, revealed on October 21, 2024, brings together two industry leaders to strengthen their collective position …

GHOSTPULSE Hides Within PNG File Pixel Structure To Evade Detections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The popularity of PNG files combined with their widespread use on the internet makes them an attractive vector for threat actors. They also target PNG files primarily because they can hide malicious code using techniques like “steganography.” Elastic security labs …