The Splunk-Cribl lawsuit is poised to go to trial. Both companies are suing over alleged violations of enterprise license terms. The case, brewing since October 2022, has now escalated to …
JsOutProx Malware Abusing GitLab To Attack Financial Institutions
GitLab is a prominent web-based Git repository manager that is exploited by hackers to gain unauthorized access to confidential source code, steal intellectual property or insert malicious code into projects …
Hackers Hijacked Notepad++ Plugin To Inject Malicious Code
Hackers have manipulated a popular Notepad++ plugin, injecting malicious code that compromises users’ systems upon execution. The AhnLab Security Intelligence Center (ASEC) researchers have revealed that the “mimeTools.dll” plugin, which …
Hackers Use Weaponized PDF Files to Deliver Byakugan Malware on Windows
Due to their high level of trust and popularity, hackers frequently use weaponized PDF files as attack vectors. Even PDFs can contain harmful codes or exploits that abuse the flaws …
Multiple Chinese Hacking Groups Exploiting Ivanti Connect Secure VPN Flaw
Cybersecurity firm Mandiant has uncovered a series of sophisticated cyberattacks targeting Ivanti Connect Secure VPN appliances. These attacks, attributed to multiple Chinese nexus espionage groups, exploit critical vulnerabilities to facilitate …
Magento Vulnerability Let Attackers Inject Backdoor On E-commerce Websites
A sophisticated vulnerability within the Magento ecommerce platform has been unveiled, posing a significant threat to online merchants and shoppers alike. The vulnerability, identified as CVE-2024-20720, allows attackers to inject …
Hackers Claiming XpressBees Data Leak: 95K User Personal Data Leaked
The logistics and supply chain company XpressBees has become the latest victim of a data breach. A user by the alias “IntelBroker” on the notorious BreachForums community has claimed responsibility …
Apache HTTP Server Flaw Let Attackers Inject Malicious Headers Amd HTTP/2 DoS
Apache released updates to address several vulnerabilities impacting the Apache HTTP server that let attackers launch HTTP/2 DoS attacks and insert malicious headers. Server operations are being adversely affected by these …
Cyber Attack Hits World’s Second Largest Lens-maker
HOYA CORPORATION, the world’s second-largest lens manufacturer, has reported an IT system incident that has disrupted its operations. The Tokyo-based company, known for its advanced optics technology and a broad …
New Fake E-Shopping Attack Hijacking Users Banking Credentials
A fake e-shop scam campaign has been targeting Southeast Asia since 2021, as CRIL observed a surge in activity in September 2022, with the campaign expanding from Malaysia to Vietnam …


