Chrome Zero-day Vulnerability (CVE-2024-7971) Actively Exploited in The Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has recently addressed a high-severity zero-day vulnerability in its Chrome browser, identified as CVE-2024-7971. This vulnerability involves a type of confusion issue within the V8 JavaScript engine, which can …

Chipmaker Microchip Hit by Cyber Attack, Operations Impacted

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microchip Technology Incorporated, a leading semiconductor manufacturer, has been hit by a significant cyber attack that has disrupted its operations. The company, which supplies chips to the U.S. defense industry, …

AWS Configuration Vulnerability Exposes Thousands of Web Apps to Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent discovery by Miggo Research has unveiled a critical configuration vulnerability in Amazon Web Services (AWS) that exposes thousands of web applications to potential attacks. This vulnerability, dubbed “ALBeast,” …

TA453 Hackers Using Fake podcast To Deliver New BlackSmith Malware Toolkit

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iranian threat actor TA453 launched a phishing campaign targeting a prominent religious figure with a fake podcast invitation aiming to deliver a new malware toolkit, BlackSmith, containing a PowerShell trojan …

Critical Slack Vulnerability Let Attackers Steal Data From Private Slack Channels

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered vulnerability in Slack AI could allow attackers to exfiltrate sensitive data from private Slack channels. Cybersecurity researchers responsibly disclosed a vulnerability to Slack that involves manipulating the …

Dell SupportAssist Vulnerability Exposes PCs to Privilege Escalation Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been identified in Dell’s SupportAssist for Home PCs, specifically affecting the installer executable version 4.0.3. This flaw, tracked as CVE-2024-38305, allows local low-privileged authenticated attackers …