VNC Attacks in It’s Peak – Over 8,000 Servers Exposed Online Without a Password

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over 8,000 VNC endpoints have been discovered by researchers at Cyble security firm to be exposed to the internet. Threat actors can easily gain access to internal networks by accessing …

Chinese Hackers Backdoor Chat App to Steal Data From Windows, Linux & macOS

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity researchers at SEKOIA have recently identified a trojanized version of MiMi, which is primarily aimed at the Chinese market but is also cross-platform and can be used on …

Zimbra Auth Security Flaw Used to Exploit Over 1,000 Govt. & Financial Orgs Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

There is an authentication bypass security vulnerability in Zimbra which is actively exploited by cybercriminals in order to compromise ZCS email servers around the world. A wide range of businesses, …

Xiaomi Phones with MediaTek Chips Found Vulnerable to Forged Payments

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CheckPoint researched the payment system built into Xiaomi smartphones powered by MediaTek chips. From the analysis, they identified vulnerabilities that can allow the forging of payment packages or disabling the …

Palo Alto Networks Devices Running the PAN-OS Could Allow Attacker to Launch DoS Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A high severity issue tracked as (CVE-2022-0028), CVSS score of 8.6, in Palo Alto Networks devices running the PAN-OS could allow an attacker to launch Denial-of-Service (DoS) attack. The issue …

Cisco High Severity Flaw Let Attackers Retrieve RSA Private Key Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco released software updates that address the vulnerability affecting its Adaptive Security Appliance Software (ASA) and Firepower Threat Defense Software (FTD). The high severity flaw is tracked as (CVE-2022-20866) found …

Onyx Ransomware Overwrites Files Larger than 2MB Instead of Encrypting Them

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

As early as mid-April of 2022 was the first time researchers discovered the Onyx ransomware. The ransomware group uses the double extortion method of encrypting and exfiltrating data from a …