CISA Warns of Actively Exploited Critical Zoho ManageEngine ServiceDesk Vulnerability

Blog WriterThe Hacker News - Original news source is thehackernews.com

The U.S. Federal Bureau of Investigation (FBI) and the Cybersecurity and Infrastructure Security Agency (CISA) are warning of active exploitation of a newly patched flaw in Zoho’s ManageEngine ServiceDesk Plus …

Researches Detail 17 Malicious Frameworks Used to Attack Air-Gapped Networks

Blog WriterThe Hacker News - Original news source is thehackernews.com

Four different malicious frameworks designed to attack air-gapped networks were detected in the first half of 2020 alone, bringing the total number of such toolkits to 17 and offering adversaries …

Meta Expands Facebook Protect Program to Activists, Journalists, Government Officials

Blog WriterThe Hacker News - Original news source is thehackernews.com

Meta, the company formerly known as Facebook, on Thursday announced an expansion of its Facebook Protect security program to include human rights defenders, activists, journalists, and government officials who are …

Let there be light: Ensuring visibility across the entire API lifecycle

Blog WriterThe Hacker News - Original news source is thehackernews.com

The following article is based on a webinar series on enterprise API security by Imvision, featuring expert speakers from IBM, Deloitte, Maersk, and Imvision discussing the importance of centralizing an organization’s …

Critical Bug in Mozilla’s NSS Crypto Library Potentially Affects Several Other Software

Blog WriterThe Hacker News - Original news source is thehackernews.com

Mozilla has rolled out fixes to address a critical security weakness in its cross-platform Network Security Services (NSS) cryptographic library that could be potentially exploited by an adversary to crash …

Russian Man Gets 60 Months Jail for Providing Bulletproof Hosting to Cyber Criminals

Blog WriterThe Hacker News - Original news source is thehackernews.com

A Russian national charged with providing bulletproof hosting services for cybercriminals, who used the platform to spread malware and attack U.S. organizations and financial institutions between 2009 to 2015, has …

Hackers Increasingly Using RTF Template Injection Technique in Phishing Attacks

Blog WriterThe Hacker News - Original news source is thehackernews.com

Three different state-sponsored threat actors aligned with China, India, and Russia have been observed adopting a new method called RTF (aka Rich Text Format) template injection as part of their phishing campaigns …