This week, a database of contact information for more than 80,000 members of InfraGard, a project established by the U.S. Federal Bureau of Investigation (FBI) to establish partnerships with the …
Critical SPNEGO Extended Negotiation Vulnerability Let Attacker Execute Code Remotely
An information disclosure vulnerability was patched by Microsoft in September 2022 which has been found in SPNEGO NEGOEX and this flaw was tracked as CVE-2022-37958. While this vulnerability was reclassified …
GoTrim Actively Brute Forces WordPress Websites to Gain Admin Access
GoTrim, a new botnet malware that is based on the Go language has been spotted searching the internet for self-hosted WordPress (WP) sites in an attempt to brute force the …
Windows SmartScreen & DirectX Graphics Zero-day Flaw Let Attacker Gain Admin Privilege
Microsoft releases a few patches in December normally, and this year is no exception. Microsoft Patch for December 2022, a total of 52 vulnerabilities in Microsoft Windows and Windows Components, Azure, …
Hackers Exploit Citrix ADC and Citrix Gateway Zero-day Vulnerability to Gain Access to Corporate Networks
The Citrix Gateway and Citrix ADC both contain vulnerabilities that have been discovered recently. In short, there is a critical zero-day vulnerability identified as “CVE-2022-27518” by Citrix in both of …
Hackers Using Microsoft-signed Malicious Windows Drivers in Ransomware Attacks
Following a series of cyberattacks, including ransomware attacks, Microsoft recently revoked several Microsoft hardware developer accounts. In a coordinated disclosure, the news came from the following entities:- Microsoft Mandiant Sophos …
Apple New Webkit Zero-day Flaw Used Actively Used in Attacks Against iPhones
Apple has patched its tenth zero-day vulnerability since the beginning of the year, with the most recent one being actively utilized in attacks against iPhones. Furthermore, Apple said that the bug “may …
StormWall’s New Point of Presence in Singapore Brings DDoS Protection to APAC
StormWall, a cybersecurity service that specializes in providing DDoS protection for IT infrastructures of all sizes and complexity, including websites, networks, and online services, today announced the opening of its …
Uber Hacked Again? – Data from Uber and Uber Eats Published on Hacking Forums
Uber has been the subject of a new cyberattack. Early on Saturday morning, a threat actor going by the name of “UberLeaks” began publishing information on a hacking forum known …
Red Team and Blue Team Operations : How Does it Works?
Security is a multifaceted field with multiple roles for carrying out diverse operations. In this article, we demystify the concept of the red team and the blue team in security. …










