Iranian actors selling Login Access to Organizations networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

International security agencies have raised alarms about Iranian cyber actors compromising networks across critical infrastructure sectors. These actors reportedly sell login access to these networks, posing significant risks to global cybersecurity. This article delves into the methods used by these …

Trend Micro Cloud Edge Vulnerability Let Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Trend Micro has issued an urgent security bulletin warning users of a critical vulnerability in its Cloud Edge appliance that could allow remote attackers to execute arbitrary code without authentication. The vulnerability tracked as CVE-2024-48904 has been assigned a CVSS …

VMware HCX Vulnerability Let Attackers Inject Malicious SQL Queries

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VMware has disclosed a critical security vulnerability in its HCX platform, a key component for hybrid cloud extension solutions. The flaw, identified as CVE-2024-38814, allows authenticated users with non-administrator privileges to perform SQL injection attacks, potentially leading to unauthorized remote …

Anonymous Sudan Hackers Charged for Cyber Attacks on Critical Infrastructure

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A federal grand jury indictment unsealed today charges two Sudanese nationals with operating and controlling Anonymous Sudan, an online cybercriminal group responsible for tens of thousands of Distributed Denial of Service (DDoS) attacks against critical infrastructure, corporate networks, and government …

Top 10 Best Insider Risk Management Solutions – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Insider Risk is the amount of damage any event can cause due to an insider threat activity. According to a study by The Ponemon Institute, the average cost of an insider threat to an organization increases by 76%.  Data is …

What is Certificate-Based Authentication? How it Works!

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Certificate-Based Authentication (CBA) is a robust security mechanism that has been a cornerstone in high-security environments for decades. It leverages digital certificates to verify the identity of users, devices, or machines before granting access to resources. This article delves into …

New Linux Malware That Steal Money From ATMs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers are increasingly targeting ATMs through various illicit methods. They exploit physical and software vulnerabilities to force machines to dispense cash. The rise of accessible hacking tools on the dark web has made these attacks easier for even newbie threat …

Mobile Remains A Top Threat Vector With 111% Growth in 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mobile devices face a range of significant security threats as they become “critical tools” for both personal and organizational use. With the rise of “remote work” and “increased reliance on mobile technology,” organizations report that mobile devices are perceived as …

Organization Hacked by North Korean IT Worker, Remote Hiring Gone Wrong

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent cyberattack has highlighted the growing threat of North Korean operatives infiltrating Western companies by posing as remote IT workers. An unidentified firm based in the UK, US, or Australia fell victim to a hack after inadvertently hiring a …

Multiple Flaws Impacting Boot Chain Of Samsung Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Android boot chain initiates with the “Boot ROM,” which initializes the “bootloader.” The bootloader then loads the kernel, which is responsible for managing system resources and launching the init process. Recently, cybersecurity researchers at QuarksLab identified multiple vulnerabilities impacting the …