AT&T Reveals Massive Breach Affecting Nearly All Customers’ Call & Text Records

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AT&T, one of the largest telecommunications companies in the United States, has disclosed a significant data breach that exposed the call and text records of nearly all its cellular customers. The company revealed this information in a regulatory filing on …

FishXProxy Fuels Phishing Attacks with Clever Deceptive Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Imagine receiving an email that looks legitimate, down to the last detail. This is the deceptive power of the new FishXProxy Phishing Kit, a sophisticated toolkit emerging from underground cybercrime. With its advanced features, FishXProxy dismantles the technical barriers traditionally …

Beware of Phishing Attack that Abuses SharePoint Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive phishing campaign exploits Microsoft SharePoint servers to host malicious PDFs containing phishing links. As observed by ANY.RUN sophisticated attack has seen an alarming surge, with over 500 public sandbox sessions detecting SharePoint phishing attempts in just the last …

Apple Warns of Users in 98 Countries of Targeted Spyware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple has alerted iPhone users in 98 countries about potential mercenary spyware attacks. This marks the tech giant’s second such alert campaign this year, following a similar notification sent to users in 92 nations in April. Since 2021, Apple has …

Citrix NetScaler ADC & Gateway Impacted by regreSSHion RCE Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Qualys discovered a critical remote unauthenticated code execution (RCE) vulnerability, CVE-2024-6387, in OpenSSH’s server (sshd). This vulnerability, known as regreSSHion, is a regression of the previously patched CVE-2006-5051 and affects glibc-based Linux systems. The Cloud Software Group has confirmed that …

4000+ Domains Used By FIN7 Actors Mimic Popular Brands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Russian-linked FIN7 (aka Sangria Tempest, ATK32, Carbon Spider, Coreid, ELBRUS, G0008, G0046, and GOLD NIAGARA) is a financial cybercrime group that has been around since 2013 and it specifically targets the US industries. To achieve this goal, it uses spearphishing, …

CISA Warns of Hackers Exploiting OS Command Injection Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have raised alarms about hackers exploiting OS command injection vulnerabilities. These vulnerabilities, a constant issue in software products, pose essential risks to users and organizations. The …

VMware Aria Automation Flaw Let Hackers Perform SQL Injection Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VMware has released security updates to address a critical SQL injection vulnerability in its Aria Automation product. The vulnerability tracked as CVE-2024-22280, could allow authenticated attackers to perform unauthorized database operations The vulnerability affects VMware Aria Automation version 8.x and …

Critical PHP Vulnerability CVE-2024-4577 Actively Exploited in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in PHP, tracked as CVE-2024-4577, is being actively exploited by threat actors in wild just days after its public disclosure in June 2024. The flaw affects PHP installations running in CGI mode, primarily on Windows systems using …

Threat Actor Claims to have Unauthorized Fortinet VPN Access to 50+ Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A threat actor has claimed to possess unauthorized access to Fortinet VPNs of over 50 organizations in the United States. The alarming announcement was made via a post on the dark web, where the cybercriminal offers this illicit access for …