Hackers Posing as LastPass Employee to Steal Master Password & Hijack Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a sophisticated cyber attack, hackers have been discovered impersonating LastPass employees in an elaborate phishing campaign designed to steal users’ master passwords and hijack their accounts. This alarming development was recently highlighted by LastPass on their official blog, shedding …

New Redline Stealer Variant Leverages Lua Bytecode For Stealthiness

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Redline Stealer is a powerful information-stealing malware, and hackers often exploit this stealthy stealer to gain unauthorized access to a victim’s sensitive data. Threat actors can steal many sensitive and valuable data by exploiting the Redline Stealer. Threat actors can …

Cisco IMC Command Injection Vulnerability Under Active Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An attacker with read-only or higher privileges on a Cisco Integrated Management Controller (IMC) can exploit a command injection vulnerability (CVE-2024-20295) to gain full control (root access) of the underlying operating system.  The vulnerability exists due to insufficient validation of …

Cerber Linux Ransomware Exploits Atlassian Servers To Take Full Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often use Linux ransomware due to its prevalence in server environments. This type of ransomware offers higher potential payouts from organizations with critical data. Cybersecurity analysts at Cado Security Labs recently analyzed the Linux variant of the Cerber ransomware, …

“Cybercrime Index” Ranks: Russia, Ukraine, and China at the Top

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new “Cybercrime Index” has been introduced, ranking countries based on the threat level posed by cybercriminals. The Index reveals that many countries, led by Russia, Ukraine, and China, are the primary hubs for cybercriminal activities globally. Key Findings from …

R00TK1T Claims that They have Acquired Confidential Data from Nestle

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The hacker group known as R00TK1T has announced that it has successfully entered the systems of Nestle, the world’s largest food and beverage company, and acquired confidential data. The claim was made through a social media post, which has since …

Kubernetes Clusters Under Attack: Critical OpenMetadata Vulnerabilities Exploited

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft Security recently revealed a sophisticated cyber-attack campaign that targets Kubernetes clusters by exploiting newly discovered vulnerabilities in the OpenMetadata platform. The attackers have set their sights on Kubernetes workloads, leveraging critical vulnerabilities in the OpenMetadata platform to infiltrate and …

Authorities Busted Cybercrime Platform That Steal Passwords & Card Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

International law enforcement agencies have successfully dismantled a notorious cybercrime platform, LabHost, which facilitated criminals in conducting phishing attacks to steal sensitive information such as passwords, addresses, and card details from unsuspecting victims worldwide. This collaborative effort underscores the increasing global commitment …

Cisco Unveils Hypershield: AI-Powered Automated Vulnerability Shield

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco introduced its latest innovation, Cisco Hypershield, marking a significant milestone in the evolution of cybersecurity. Described as the most consequential security product in the company’s history, Hypershield is a cloud-native, AI-powered solution designed to enhance the security of AI-scale …

Cisco IOS SNMP Implementation Flaw Trigger Remote Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a recent security advisory, Cisco disclosed a significant vulnerability in the implementation of the Simple Network Management Protocol (SNMP) IPv4 access control list (ACL) feature within its IOS and IOS XE Software. This flaw could potentially allow an unauthenticated, …