Telegram Web App Vulnerability Let Attackers Hijack Sessions

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new vulnerability has been discovered in Telegram, allowing a threat actor to hijack a Telegram user session via XSS (Cross-Site Scripting). This vulnerability exists in Telegram WebK versions below 2.0.0. A CVE for this vulnerability is yet to be …

Multiple QNAP Vulnerability Let Hackers Hijack Your NAS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

QNAP has disclosed multiple vulnerabilities across its network-attached storage (NAS) systems, which could allow hackers to take control of affected devices. The vulnerabilities impact several versions of QNAP’s operating systems and applications, including QTS, QuTS hero, QuTScloud, and myQNAPcloud. CVE …

Find Malware With ANY RUN Threat Intelligence YARA Search by File Contents

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

YARA is a rule-based malware detection tool that utilizes regular expressions and textual/binary signatures to create descriptions (rules) for identifying malicious files.  Within ANY.RUN TI, YARA Search allows you to write, edit, test, download, and manage your rules seamlessly, using …

Vulnerability in Apache Project  Let Hackers Launch Supply Chain Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers discovered a vulnerability in an archived Apache project, highlighting the risk of using outdated third-party dependencies, where attackers can exploit the way package managers prioritize public repositories to install a malicious package with the same name as a legitimate …

ICICI Bank Data Leak Exposes 17,000 Customers’ Credit Card Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ICICI Bank, one of India’s leading private banks, has confirmed the exposure of sensitive credit card information belonging to thousands of customers. The Mumbai-based bank acknowledged that a technical glitch in its mobile banking application, iMobile Pay, led to approximately …

Cactus Ransomware Exploiting Qlik Servers Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cactus ransomware gang has been exploiting vulnerable Qlik sense servers ever since November 2023 using multiple vulnerabilities such as CVE-2023-41266 (Path Traversal), CVE-2023-41265 (HTTP request Tunneling) and CVE-2023-48365 (Unauthenticated Remote Code Execution). Though Qlik has addressed these vulnerabilities with …

Hackers Abuse Autodesk Drive For Hosting Weaponized PDF Files

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Autodesk Drive is a data-sharing platform for organizations to share documents and files in the cloud. It also supports 2D and 3D data files, including PDF files, which are free to use when other Autodesk products are subscribed. However, a …

MuddyWater Hackers Abusing Legitimate RMM Tool to Deliver Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Iranian state-sponsored threat actor MuddyWater has been observed exploiting a legitimate remote monitoring and management (RMM) tool, Atera Agent, to conduct a sophisticated malware delivery campaign. This alarming trend has been under scrutiny since the beginning of 2024, with …

Microsoft Releases Historical MS-DOS 4.0 Source Code to the Public

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a significant move for tech enthusiasts and historians alike, Microsoft has made the source code for MS-DOS 4.0 publicly available. This decision marks a pivotal moment in the accessibility of historical software, allowing developers, students, and technology aficionados to …

PoC Exploit Released For Critical Flowmon Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Progress addressed a critical vulnerability last week, which was associated with an unauthenticated Command injection on the Progress Flowmon product. This vulnerability was assigned CVE-2024-2189, and the severity was given as 10.0 (Critical). Progress Flowmon is a network monitoring and …