LockBit has become the most reputable ransomware group in recent times. The method by which they operate differs from other ransomware groups. LockBit recruits people as affiliates for deploying ransomware …
10 Most Dangerous Injection Attacks in 2023
Since you are in the industry, especially in the network and admin team, you need to know a few vulnerabilities such as injection attacks to stay alert from them. Each …
Russia-Backed Hackers Using New USB-based Malware to Acquire Ukraine’s Military Intelligence
Ukraine remains under constant threat as the Russian state-sponsored hacking group Shuckworm (aka Armageddon or Gamaredon) continues to carry out numerous cyber attacks, mainly focusing on the following organizations of …
Hackers Using ChatGPT & GoogleBard to Launch Sophisticaed Email Attacks
Researchers uncovered a new phishing email campaign that employs ChatGPT and Google Bard to launch sophisticated email attacks. Threat actors had started relying on Artificial Intelligence since November 2022, when ChatGPT was released; many …
XSS Vulnerabilities in Azure Services Let Attackers Execute Malicious Scripts
Two severe vulnerabilities in Azure services, Azure Bastion and Azure Container Registry—that allow Cross-Site Scripting (XSS) by leveraging a flaw in the postMessage iframe have been discovered. Cross-site scripting (XSS) …
Chinese Hackers Employed DNS-over-HTTPS for Linux Malware Communication
ChamelGang, a sophisticated threat actor believed to be based in China, has been using different tools for intrusions, as identified by the security researchers at Stairwell Threat Research in their …
Critical Vulnerability in WordPress Stripe Payment Plugin Exposes Customer Data
The WordPress Stripe Payment Gateway plugin has been vulnerable to Unauthenticated Insecure Direct Object Reference (IDOR) Vulnerability. WooCommerce developed this plugin. The plugin version is 7.4.1 and has nearly 900K …
Hackers Targeting Microsoft’s MS SQL Servers Extensively – New Study
The rapid rise of digital and technological advances brought several innovative improvements. Still, besides this, the security of databases has also become extremely important, as with digital advancements, security threats …
Microsoft’s June 2023 Patch Tuesday – 38 Remote Code Execution Flaws Patched
Microsoft’s Patch Tuesday for June 2023 is here, bringing security updates for 78 problems, including 38 vulnerabilities that can be exploited remotely. Microsoft addressed 38 bugs that could allow remote …
Critical Fortinet Flaw Let Attackers Execute Remote Code on SSL-VPN Devices
Fortinet has fixed a critical pre-authentication remote code execution vulnerability in SSL VPN devices with the release of new Fortigate firmware upgrades. Versions 6.0.17, 6.2.15, 6.4.13, 7.0.12, and 7.2.5 of …










