Hackers Deploy AsyncRAT and SectopRAT Using ScreenConnect Software on Windows

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminal groups are increasingly blending new and traditional techniques to steal sensitive information from unsuspecting users by deploying remote access tools (RATs) such as AsyncRAT and SectopRAT. Recent activity in …

Webmin RCE Vulnerability Let Attackers Execute Arbitrary Code & Gain Server Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Webmin, the popular web-based system administration tool, has been found to contain a critical security vulnerability that could allow attackers to seize control of servers. The vulnerability, identified as CVE-2024-12828, …

New G-Door Vulnerability Lets Hackers Bypass Microsoft 365 Security With Google Docs

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered vulnerability, dubbed “G-Door,” allows malicious actors to circumvent Microsoft 365 security measures by exploiting unmanaged Google Docs accounts. This security flaw poses a significant threat to organizations …

Threat Actors Exploiting Microsoft Office Vulnerability to Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated cyber-espionage group known as Cloud Atlas has been observed leveraging a critical Microsoft Office vulnerability to launch targeted attacks against organizations in Eastern Europe and Central Asia. According …

WPA3 Network Password Bypassed via MITM Attack & Social Engineering

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have successfully bypassed the Wi-Fi Protected Access 3 (WPA3) protocol to obtain network passwords using a combination of Man-in-the-Middle attacks and social engineering techniques. The research, conducted by Kyle …

Italy Imposed EUR 15 million Fine to Open AI For Violating GDPR

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Italian Data Protection Authority (known as “Il Garante”) has imposed a €15 million fine on OpenAI for violations of the General Data Protection Regulation (GDPR). This punitive measure follows …

IBM Cognos Analytics Vulnerability Allows Malicious File Upload & Injection Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

IBM has released a critical security update for its Cognos Analytics software, addressing two severe vulnerabilities: CVE-2023-42017 and CVE-2024-51466. These vulnerabilities could allow attackers to upload malicious files or execute Expression Language (EL) …

PHP-based Craft CMS Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in the popular PHP-based Craft CMS has been discovered, allowing unauthenticated attackers to execute remote code on affected systems. The security flaw, identified as CVE-2024-56145, affects default …

U.S Intelligence Agencies Launched Cyber Attack on Chinese Tech Companies

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Chinese National Internet Emergency Center has discovered and resolved two significant cases of cyber espionage targeting Chinese technology companies and research institutions. The attacks, suspected to have been orchestrated …