IT admins can be considered culpable for weak password use if they fail to enforce strong password policies or neglect proper security measures. Their responsibility includes setting and maintaining robust …
D-Link Hacked: Hackers Steal Source Code and Customer Personal Information
D-Link Hacked: Hackers Steal Source Code and Customer Personal Information By Guru – October 18, 2023 D-Link Corporation, a multinational company that provides innovative networking solutions for both consumer and …
CISA, FBI Warns of Critical Atlassian Zero-Day Flaw Under Active Attack
A serious security flaw in some versions of Atlassian Confluence Data Center and Server has been exploited by hackers. They have used this flaw to create fake admin accounts and …
Titan File Transfer Server Flaws Let Attackers Execute Remote Code
Multiple vulnerabilities have been discovered in Titan MFT and Titan SFTP servers owned by South River Technologies, which were associated with Information Disclosure, Session Fixation, and Remote code execution. However, …
Top 10 Best Insider Risk Management Platforms 2023
Insider Risk refers to the potential harm or negative impact that can arise from any illicit or unauthorized activity carried out by an individual within an organization who has legitimate …
Threat Actors Actively Exploiting Cisco IOS XE Zero-day Vulnerability
Threat actors exploit zero-day vulnerabilities because these flaws are unknown to the software developers, making them highly effective for launching attacks. Exploiting zero-days allows malicious actors to bypass security measures …
ChatGPT for Vulnerability Detection – Prompts Used and their Responses
Software vulnerabilities are essentially errors in code that malicious actors can exploit. Advanced language models such as CodeBERT, GraphCodeBERT, and CodeT5 can detect these vulnerabilities, provide detailed analysis assessments, and …
EtherHiding: A Novel Technique to Hide Malicious Code Using Binance’s Smart Chain
Threat actors have employed a new technique to distribute malicious code named “EtherHiding,” which abuses Binance’s Smart Chain (BSC) contracts to host parts of a malicious code chain to hide …
IBM QRadar SIEM XSS Flaw Let Attackers Execute JavaScript code
Two medium-severity vulnerabilities have been discovered in the widely used IBM QRadar SIEM, associated with Cross-Site Scripting (XSS) and Information disclosure. The vulnerabilities have been assigned with CVE-2023-40367 and CVE-2023-30994. …
CISA to Flag Vulnerabilities & Misconfigurations Exploited in Ransomware Attacks
Ransomware attacks have grown to be a serious concern for businesses of all sizes, with the potential to seriously harm the operations, finances, and reputation of the targeted enterprises. Many ransomware …


