Microsoft 365 Flags Users Email Messages Having Images Flagged as Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft 365 has acknowledged an issue affecting its Exchange Online service, where some users’ email messages containing images are being incorrectly flagged as malware and quarantined. This problem, identified under Issue ID EX873252, has been classified as a service degradation …

Argentina Busted Crypto Ring Used Linked with North Korean Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Argentine authorities have dismantled a sophisticated cryptocurrency operation based in Buenos Aires. The operation, which was allegedly connected to North Korean hackers, involved illegal currency exchanges and the laundering of funds linked to a $100 million cyber heist. This investigation, …

WordPress Plugin Flaw Exposes 1,000,000 WordPress Sites to Remote Code Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A vulnerability in the WPML (WordPress Multilingual) plugin has put over a million WordPress sites at risk of remote code execution (RCE) attacks. This flaw allows authenticated users with contributor-level access or higher to execute arbitrary code on the server, …

Microsoft Copilot Prompt Injection Vulnerability Let Hackers Exfiltrate Personal Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have revealed that a critical security flaw in Microsoft 365 Copilot allowed attackers to exfiltrate sensitive user information through a sophisticated exploit chain. The vulnerability, which has since been patched, combined multiple techniques to bypass security controls and steal …

Apache Vulnerability Let Attackers Steal Sensitive Data from Unix Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recently disclosed vulnerability in the Apache Portable Runtime (APR) library could expose sensitive Unix platform application data. Identified as CVE-2023-49582, the flaw arises from lax permissions on shared memory segments, which could allow unauthorized local users to access sensitive …

Beware of Fake Microsoft Support Search Ads that Lands into Scam

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Many people turn to search engines for assistance with their computer issues, often searching for contact information for tech giants like Microsoft or Apple. However, this reliance on search engines has become a fertile ground for scammers, who have devised …

Seattle Airport Hit by Possible Cyberattack, Websites & Phone Systems Were Impacted

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Port of Seattle and Seattle-Tacoma International Airport (Sea-Tac) were victims of a possible cyberattack over the weekend, causing significant disruptions to their websites, email services, and phone systems. The incident, which began on Saturday morning, affected thousands of travelers …

Chrome Zero-Day Vulnerability (CVE-2024-7965) Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has addressed a critical zero-day vulnerability in its Chrome browser, identified as CVE-2024-7965. This high-severity flaw, which affects versions of Chrome prior to 128.0.6613.84, has been actively exploited in the wild, prompting users to update their browsers immediately. CVE-2024-7965 …

IntelBroker Allegedly Claiming Breach of AMD Internal Communications

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

IntelBroker and EnergyWeaponUser, known for their illegal activities, have announced a new data breach targeting the large technology company AMD. This breach is said to have occurred on August 25, 2024, and is separate from a previous breach in June. …

SonicWall SonicOS Vulnerability Let Attackers Gain Unauthorized Access & Crash Firewall

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SonicWall has recently disclosed a critical security vulnerability affecting its SonicOS management access, identified as CVE-2024-40766. This vulnerability, classified as an improper access control issue (CWE-284), has been assigned a high CVSS v3 score of 9.3. It poses significant risks, …