A massive data breach has occurred, resulting in the leak of personal information belonging to 815 million Indian citizens on the dark web. The compromised data includes personally identifiable information, …
TA571 Hacker Group Deliver IcedID Malware Via Password-protected Zip Archive
Hackers often use password-protected Zip Archive files for malware distribution to evade detection by security software. They let the malware infiltrate the target system without detection by encrypting the file, …
Hackers Infect Windows Users with Weaponized MSIX App Packages
MSIX helps developers package Windows apps for easy installation. While it’s user-friendly, it demands access to code signing certificates, making it an attractive target for resourceful threat actors. Additionally, MSIX …
NGINX ingress Security Flaw Let Attackers Kubernetes API Server Credentials
Three vulnerabilities have been discovered in NGINX ingress controllers, which were associated with arbitrary command execution, code injection, and sanitization bypass. The severity of these vulnerabilities ranges between 7.6 (High) …
Hackers Have Earned More Than $300 Million on the HackerOne Platform
The ethical hacking community has earned $300 million in total all-time rewards on the HackerOne platform. In addition, thirty hackers have made over a million dollars on the network; one hacker’s total …
Lazarus Group Hacked Software Vendor to Steal Source Code, Attack Supply Chain
A hacker attack on a supply chain can be highly dangerous as it can disrupt the flow of goods and services, causing widespread economic and operational damage. Such attacks pose …
CISA Announces New Logging Tool for Windows-based Devices
CISA Announces New Logging Tool for Windows-based Devices By Guru – October 30, 2023 The Cybersecurity and Infrastructure Security Agency (CISA) has launched a new version of Logging Made Easy …
iLeakage – New Attack Let Hackers Steal Emails, Passwords On Apple Safari
Browser-based timerless speculative execution attacks are a security threat that exploits vulnerabilities in web browsers and CPUs. These attacks do not rely on timing measurements, making them harder to detect. …
BIG-IP Vulnerability Allows Attackers to Execute Remote Code
A critical security flaw that might allow for unauthenticated remote code execution has been identified and is categorized as CVE-2023-46747 with a 9.8 CVSS score. The F5 reports state that …
11 Best Cloud Access Security Broker Software (CASB) – 2023
The Cloud Access Security Broker serves as a gatekeeper for organizations, assisting them in keeping track of and safely utilizing cloud services while ensuring that network traffic complies with their …










