PoC Exploit Released for Linux Kernel Privilege Escalation Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Proof-of-Concept (PoC) exploit has been released for a critical privilege escalation vulnerability in the Linux kernel. The vulnerability tracked as CVE-2023-3390 has raised alarms due to its potential to allow attackers to gain elevated privileges on affected systems. This …

Hackers Exploited TikTok Zero-Day Vulnerability to Hijack High-Profile Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

TikTok has confirmed that hackers exploited a zero-day vulnerability in its direct messaging (DM) feature to hijack several high-profile accounts. The affected accounts include those of celebrities like Paris Hilton and major media organizations such as CNN and Sony. The …

ANY RUN Sandbox Added New Features to Analyse Sophisticated Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ANY.RUN revamped their user interface for a more streamlined workflow, as the sandbox homepage now features shortcut buttons for launching new analysis sessions, eliminating the need to navigate through the outdated map interface.  A dedicated demo page within the Threat …

Hackers Weaponize Authentication Tools To Deliver NiceRAT Malware via Botnet

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Botnets, traditionally used for DDoS attacks with malware like Nitol, are now being built with malware capable of data exfiltration and installing additional malware, confirmed by the discovery of NiceRAT malware being installed through a popular botnet active since 2019.  …

Confluence Data Center & Server Flaw Allows Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Atlassian disclosed a high-severity vulnerability that exists in multiple versions of their Confluence Data Center and Server. The CVE for this vulnerability was assigned with CVE-2024-21683 and the severity was given as 8.3 (High). Confluence has addressed this vulnerability in …

10 Best Cloud Security Companies In 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the digital age, cloud security is crucial as businesses increasingly depend on cloud services and top cloud security companies provide advanced solutions to protect data, applications, and infrastructure from cyber threats. These firms specialize in cloud service and application …

Hackers Actively Exploiting Checkpoint 0-Day Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have identified a critical zero-day vulnerability in Checkpoint’s security software that hackers are actively exploiting. The flaw assigned to the identifier CVE-2024-24919 poses a significant threat to organizations relying on Checkpoint’s solutions for their cybersecurity needs. Details of …

PoC Exploit Released for macOS Root Access Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A security vulnerability, identified as CVE-2024-27822, has been discovered in macOS. This vulnerability allows unauthorized root access and has raised serious concerns among cybersecurity experts and macOS users alike. The release of a Proof-of-Concept (PoC) exploit code has intensified the …

Massive Ticketmaster, Santander Data Breaches Linked to Snowflake Account Hacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers have claimed responsibility for a massive data breach involving Ticketmaster and Santander Bank, potentially affecting over 590 million accounts. The breach, linked to a Snowflake employee’s compromised credentials, has raised serious concerns about the security of cloud storage services. …

Vidar Stealer Employs Advanced Tactics to Evade Defense Solutions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Vidar Stealer has emerged as a potent and sophisticated malware, posing significant risks to both organizations and individuals. This information-stealing malware, operating as a malware-as-a-service (MaaS), has been meticulously analyzed by CYFIRMA, revealing its advanced tactics and techniques for …