Callback Phishing Attacks Using Google Groups To Steal Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Phishing attacks are deceptive schemes where attackers impersonate reputable entities to trick individuals into revealing “sensitive information.” These attacks often occur via email using urgent language to prompt victims to …

Hackers Registered 1,000+ New Malicious Domains Targeting US Elections

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered over 1,000 newly registered malicious domains designed to exploit public interest in the upcoming vote. This surge in potentially harmful websites poses significant risks to voter …

Critical OneDev DevOps Platform Vulnerability Let Attacker Read Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been identified in the OneDev DevOps platform, posing significant security risks to organizations relying on this tool for their software development and deployment processes. The issue, …

Hackers Exploiting Exposed Docker Remote API Servers With perfctl Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly targeting exposed Docker Remote API servers to deploy the perfctl malware, posing significant threats to organizations relying on containerized environments. These attacks involve a structured probing sequence, …

CISA Adds Sciencelogic SL1 Unspecified Vulnerability to KEV Catalog

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CISA has recently added a critical security vulnerability affecting ScienceLogic SL1 to its Known Exploited Vulnerabilities (KEV) catalog following reports of active exploitation in the wild. This addition underscores the …

Windows Remote Registry Client EoP Flaw Exposes Systems to Relay Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical elevation of privilege (EoP) vulnerability, identified as CVE-2024-43532, has been discovered in the Windows Remote Registry client. This vulnerability potentially allows attackers to relay NTLM authentication and gain …

Crypto Payment Firm Transak Hit by Data Breach After Employee’s Laptop Hack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Transak, a leading crypto payment services provider, has been affected by a significant data breach that affected over 92,000 users. The incident, which came to light on October 21, 2024, …