CISA Releases Six New Advisories For Industrial Control Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued six new advisories concerning industrial control systems (ICS) on September 19, 2024. These advisories highlight critical vulnerabilities in various ICS products, offering crucial information for users to safeguard their systems against …

New MacOS Malware Let Attackers Control The Device Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A remote access trojan (RAT), HZ RAT, that has been attacking Windows-based devices since at least 2020, was recently upgraded and changed to target Mac users as well.  Typically, a RAT is a type of malware that an attacker employs …

GitLab Urges Organizations To Patch For Authentication Bypass Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab, the popular DevOps platform, has issued a critical security advisory urging organizations to immediately patch their self-managed GitLab instances to address a severe authentication bypass vulnerability. The flaw tracked as CVE-2024-45409, could allow attackers to gain unauthorized access to …

Google Password Manager PIN Feature Let Users Sync Passkeys Across Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has unveiled a new feature in its Password Manager that allows users to sync passkeys across multiple devices. This update promises enhanced security and convenience, making accessing favorite sites and apps more accessible than ever with a fingerprint or …

UNC1860 Hackers Use Specialized Tools & Backdoors To Penetrate Victims’ Networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mandiant exposed the activities of UNC1860, a sophisticated Iranian state-sponsored cyber group. This group, believed to be affiliated with Iran’s Ministry of Intelligence and Security (MOIS), has been actively infiltrating high-priority networks across the Middle East, including government and telecommunications …

TeamTNT Hackers Attacking VPS Servers Running CentOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A notorious hacking group known as TeamTNT has resurfaced with a new campaign targeting Virtual Private Server (VPS) infrastructures running on the CentOS operating system. The group, known for its cryptojacking activities, has been active since at least 2019 and …

Operation Kaerb, Masterminds Behind iserver Phishing-As-A-Service Platform Arrested

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Operation Kaerb resulted in the arrest of 17 cybercriminals in Argentina, Chile, Colombia, Ecuador, Peru, and Spain. This international operation is coordinated by Europol, Group-IB, and Ameripol. These individuals were key players behind the notorious iServer phishing-as-a-service platform, which targeted …

Ivanti Warns of CSA Vulnerability Actively Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ivanti has warned about a critical vulnerability in its Cloud Services Appliance (CSA) 4.6, which has been actively exploited in attacks. The vulnerability, identified as CVE-2024-8963, is a path traversal flaw that allows remote unauthenticated attackers to access restricted functionality. …

Why Cynet’s All-in-One Platform Is a Game-Changer for MSPs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Managed Services Providers (MSPs) are increasingly looking to provide cybersecurity services based on heightened demand from their current clients. Though the revenue potential is lucrative, the road for many MSPs to transition into a Managed Security Services Provider (MSSP) is …

Threat Actors Weaponized Splinter Post-Exploitation Red Team Tool Discovered

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Unit 42 cybersecurity researchers have identified a new post-exploitation red team tool, Splinter, using Advanced WildFire’s memory scanning tools. This tool, developed in Rust, a programming language known for its memory safety features, has been found on several customer systems, …