Firefox Patches Multiple High Severity Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Mozilla has released Firefox 129, addressing multiple high-severity vulnerabilities. These patches are critical for enhancing the browser’s security and protecting users from potential exploits. Detailed Vulnerability Table The latest Firefox update patches several critical vulnerabilities, each significantly impacting user security. …

Microsoft 365 Anti-phishing Feature Bypassed Using CSS Style Tags

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Phishing is the most effective method for an attacker to infiltrate an organization. Several attack methods and techniques are available for an attacker to send a phishing email. On the other hand, email clients such as Outlook or Gmail also …

Critical Kibana Vulnerability Let Attackers Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Kibana, a popular open-source data visualization and exploration tool, has identified a critical security flaw that could allow attackers to execute arbitrary code. This vulnerability, tracked as CVE-2024-37287, has a CVSSv3 severity rating of 9.9, indicating its critical nature. CVE-2024-37287 …

Chrome Security Vulnerability Let Attackers Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has released a critical security update for its Chrome browser, addressing multiple high-severity vulnerabilities that could allow attackers to execute malicious code on users’ systems. The update, version 127.0.6533.99/.100 for Windows and Mac, and 127.0.6533.99 for Linux, was announced …

CrowdStrike Publishes Technical Root Cause Analysis of Faulty Falcon Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity giant CrowdStrike has released a comprehensive technical root cause analysis detailing the events that led to a problematic Falcon sensor update on July 19, 2024. The incident caused system crashes for some Windows users and prompted a swift response …

Hackers Hijack Anti-Virus Software Using SbaProxy Hacking Tool

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers from LevelBlue Labs have uncovered a new tactic threat actors employ to hijack legitimate anti-virus software for malicious purposes. This sophisticated attack leverages a tool named SbaProxy, which masquerades as a legitimate anti-virus component to establish proxy connections through …

Samsung Announces $1 Million Rewards for Arbitrary Code Execution Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Samsung has significantly increased its bug bounty program as part of its ongoing efforts to enhance mobile security. The tech giant is now offering rewards of up to $1 million for researchers who can demonstrate critical vulnerabilities in its mobile …

Western Digital’s WD Discovery App Flaw Allows Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Western Digital Discovery app, a well-known provider of storage devices, has a vulnerability identified as CVE 2024-22169 with a CVSS base score of 7.1 that allows for code execution. The security vulnerability arises due to the Node.js environment settings …

New Cryptokat Ransomware Released Allegedly Claiming Fast Encryption

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new ransomware, dubbed CryptoKat, has emerged on the dark web, stirring significant concern within the cybersecurity community. The ransomware was first reported by the cybersecurity analyst MonThreat on their social media platform X, highlighting its advanced features and potential …

Network Admins Beware! SharpRhino Ransomware Attacking Mimic As Angry IP Scanner

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hunters International has deployed a novel C# malware dubbed SharpRhino as an initial infection vector and persistent Remote Access Trojan (RAT).  Delivered through a typosquatting domain that looks like an Angry IP Scanner, SharpRhino uses techniques that have never been …