Trustwave’s open-source Web Application Firewall (WAF) engine, ModSecurity, faces DoS risk due to four transformation actions vulnerability. Cybersecurity researchers at Trustwave identified this flaw and alerted the ModSecurity team about …
Over 60% of AWS Environments Exposed to Zenbleed Attacks
AMD Zenbleed 2 processors were found vulnerable to use-after-free flaws, enabling data theft. While the exploitation of this flaw demands local code execution, less likely in cloud setups. The Zenbleed …
FraudGPT: New Black Hat AI Tool Launched by Cybercriminals
Along with tech companies, cybercriminals are also actively leveraging generative AI models for creating AI-powered chatbots. The growing rise of generative AI models has dramatically changed the threat scenario. Exploiting …
API Security – Top 4 Challenges Faced by CISOs
CISOs recognize the importance of integrating web applications and API security to protect sensitive customer data while facilitating seamless business operations. Recent headlines featuring security breaches like Optus, LinkedIn, Twitter, …
ChatGPT for Software Security: How it Assists Attackers & Security Analysts
OpenAI’s ChatGPT, released in November 2022, stunned users with its diverse capabilities, answering questions and crafting custom essays, sparking widespread fascination. The versatility of ChatGPT significantly excels in addressing inquiries …
Over 19 Million Password Logs Sold on the Dark Web and Telegram
The rapid increase of info stealers has emerged as a major risk for organizations, including chatGPT, and has led to a rise in cybercrime in the last three years. These …
Top 7 Ecommerce Cybersecurity Threats in 2023
The ecommerce industry is on the rise. According to Statista, global e-commerce sales amounted to approximately $5.2 trillion. Moreover, experts predict this figure to reach about $8.1 trillion by 2026, …
Cryptojacking Attack Patterns Checklist for Administrators and Security Professionals: Microsoft
Cloud cryptojacking disguises itself as cloud computing resource abuse, where threat actors exploit legitimate tenants for cryptocurrency mining using their computing power. Cloud computing abuse leads to financial losses as …
Thales Acquired Cyber Security Company Imperva in a $3.6 Billion Deal
Thales has acquired a prominent cybersecurity company situated in the United States, renowned for its proficiency in data and application security, for a whopping $3.6 billion. Thales is a remarkable …
Hackers Mimic Popular VPN Download page to Deliver Malware
As per reports, threat actors have been using domestic VPN installation files for distributing SparkRAT malware which leads to MeshAgent infection on the victim systems. The difference between previous incidents …

