Traccar GPS System Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Two critical vulnerabilities have been discovered in the Traccar GPS. These vulnerabilities, CVE-2024-31214 and CVE-2024-24809, allow unauthenticated attackers to execute remote code on systems running Traccar 5. This article delves into the nature of these vulnerabilities, their potential impact, and …

D(HE)at Attack – 20-Yr-old Flaw Let Attackers Exploit Diffie-Hellman Protocol To Over-Heat Your CPU

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers uncovered a new type of denial-of-service (DoS) attack, known as the D(HE)at attack, exploits the computational demands of the Diffie-Hellman key agreement protocol, particularly its ephemeral variant (DHE), to overwhelm servers with minimal effort from the attacker. The attack …

Iranian Hackers Attacking Global Political Figures on WhatsApp

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

WhatsApp’s security teams have identified and blocked a cluster of malicious activities originating from Iran. The targeted campaign, linked to the Iranian threat actor group APT42, focused on political and diplomatic officials across several countries, including Israel, Palestine, Iran, the …

New Malware Employs Crazy Obfuscation Techniques to Evade Anti-Virus Detection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have recently identified a new malware strain that employs advanced obfuscation techniques to evade detection by antivirus software. The malware, encapsulated in a file named “crypted.bat,” was found to be undetectable by major antivirus engines, raising concerns about …

BlackSuit Ransomware Deployed After 15 Days From Initial Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors successfully deployed BlackSuit ransomware after maintaining access to a compromised network for 15 days. The intrusion, which began in December 2023, showcases the patience and methodical approach of modern cybercriminals. The attack commenced with the execution of a …

Hackers use AppDomainManager Injection Technique to Execute Malware on Windows

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have observed a surge in attacks leveraging a relatively unknown technique known as AppDomainManager Injection to execute malware on Windows systems. Although the concept was publicly introduced in 2017, and several proof-of-concepts and explanatory blogs have been published …

Founder and CEO of Telegram Messaging Service Arrested

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Pavel Durov, Telegram’s 39-year-old billionaire founder and CEO, was arrested on Sunday at Le Bourget Airport near Paris. French authorities detained Durov as he arrived on his private jet from Azerbaijan, acting on an arrest warrant issued in connection with …

Cyber Security News Letter(Weekly) – Data Breaches, Vulnerability, Cyber Attack & Other Stories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the ever-evolving landscape of cybersecurity, the past week has highlighted several critical developments and ongoing challenges faced by organizations globally. Cybercriminals, increasingly sophisticated and often state-sponsored, continue to pose significant threats to businesses of all sizes. One of the …

Stealthy Memory Malware PEAKLIGHT Attack Windows Using Microsoft Shortcut File (LNK)

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity analysts at Mandiant recently identified a stealthy memory malware dubbed “PEAKLIGHT.” A Stealth memory malware is often referred to as fileless malware which resides only in a computer’s RAM and consequently evades normal antivirus solutions that work on disk …

New Copybara Android Malware Remotely Controlling Infected Device

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new variant of Copybara, an Android malware family, has been detected to be active since November 2023 spreading through vishing attacks and leveraging the MQTT protocol for C2 communication.  The malware exploits the Accessibility Service to gain control over …