Mozilla’s 0Day Investigative Network, Next Generation Bug Bounty Program

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Generative artificial intelligence (GenAI) is reshaping our world, from streamlining work tasks like coding to helping us plan summer vacations. As we increasingly adopt GenAI services and tools, we face …

PoC Exploit Published For SharePoint XML eXternal Entity (XXE) Injection Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new XXE (XML eXternal Entity) Injection has been discovered to affect SharePoint on both on-prem and cloud instances. This vulnerability has been assigned to CVE-2024-30043, and the severity has …

Frontier Communications Ransomware Attack: 750,000 Users’ Data Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Frontier Communications Parent, Inc. (the “Company”) detected unauthorized access to portions of its information technology environment. The breach, attributed to a likely cybercrime group, exposed the personal data of approximately …

Bitdefender GravityZone Flaw Let Hackers Launch SSRF Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Bitdefender has recently fixed a critical Server-Side Request Forgery (SSRF) vulnerability in its GravityZone Console On-Premise, known as CVE-2024-4177. This flaw, discovered in the host whitelist parser, could have allowed …

Microsoft Made Changes to Recall Feature Following Controversial Security Concerns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has announced significant updates to its new Recall feature for Copilot+ PCs, following a wave of security and privacy concerns raised by experts and users. The Recall feature, set …

Beware of Fake Google Chrome Update Pop-Ups that Installs Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the ever-changing cybersecurity landscape, a persistent threat appears in the form of a fake Chrome update.  Usually, these efforts involve injecting harmful code into a website, which prompts individuals …

Hackers Attack ThinkPHP By Injecting Payload From Remote Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently, Akamai researchers have noted a concerning trend of attackers exploiting known vulnerabilities, such …