Microsoft SharePoint Server was reported with two vulnerabilities, CVE-2023-29357 and CVE-2023-24955, which threat actors can use for achieving remote code execution (RCE) against Microsoft SharePoint Server. These vulnerabilities were discovered …
Chinese Hackers Breached Microsoft’s Email Platform to Steal 60,000+ US Govt Emails
In a significant cybersecurity breach, Chinese hackers successfully infiltrated Microsoft’s email platform earlier this year, leading to the theft of tens of thousands of emails from the U.S. State Department …
Google Fixes Actively Exploited Zero-day Vulnerability : Patch Now!
Google Chrome version 117.0.5938.132 for Windows, Mac, and Linux has been set to release with multiple bug fixes and features. As per Google, this new version will be rolled out …
New GPU Side Channel Vulnerability Impacts GPUs from Intel, AMD, Apple & Nvidia
A new research paper has been published that mentions a side-channel attack that threat actors can exploit to leak sensitive visual data from modern GPU cards when visiting a malicious …
Firefox 118 Released with the fix for 6 High-Severity Vulnerabilities
Mozilla has recently launched Firefox 118, which addresses a total of nine security vulnerabilities. Notably, this release effectively resolves six high-severity vulnerabilities that were previously identified. The majority of vulnerabilities …
Cisco DNA Center Vulnerability Let Attacker Modify Internal Data
A security flaw has been identified in the Cisco DNA Center, which can potentially enable unauthorized access by a remote attacker. This vulnerability could allow the attacker to view and …
Threat Actors Use Abnormal Certificates to Deliver Info-stealing Malware
Malicious certificates can be highly dangerous as they can be used to deceive users into trusting malicious websites or software. This can lead to various security threats, including:- Data breaches …
‘Ransomed.Vc’ Group Attacking Japanese Giants in New operations
In the ever-evolving cyber threat landscape, Ransomed.vc, a ransomware syndicate with a rapidly growing reputation on the Dark Web, has once again made headlines. This time, their target is Japan’s telecommunications …
OPNsense Firewall Flaws Let Attackers Employ XSS to Escalate Privileges
OPNsense is a firewall and routing platform that is based on FreeBSD. It is open-source, making it freely available for use. Additionally, OPNsense is designed to be user-friendly, with a …
HiddenGh0st Malware Attacking MS-SQL & MySQL Servers
A remote control malware called Gh0st RAT, which is popular with Chinese threat actors and has publicly available source code was created by China’s C. Rufus Security Team. ASEC (AhnLab …
