FBI Warns Of HiatusRAT Attacking Web Cameras & DVRs To Gain Full Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Federal Bureau of Investigation (FBI) has issued a Private Industry Notification (PIN) alerting cybersecurity professionals and system administrators about a new threat targeting web cameras and digital video recorders …

RCE Vulnerability in 1,000,000 WordPress Sites Lets Attackers Gain Control Over Backend

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical Remote Code Execution (RCE) vulnerability (CVE-2024-6386), affecting over 1,000,000 active installations of the WordPress Multilingual Plugin (WPML). This flaw, stemming from a Server-Side Template Injection (SSTI) vulnerability in …

Hackers Exploit Microsoft Management Console to Drop Backdoor Payloads on Windows

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Securonix Threat Research team has uncovered a sophisticated tax-related phishing campaign that employs Microsoft Common Console Document (MSC) files and advanced obfuscation techniques to deliver a stealthy backdoor payload. Dubbed …

Hackers Leverage Red Team Tools in RDP Attacks Via TOR & VPN for Data Exfiltration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a striking display of cyber sophistication, the advanced persistent threat (APT) group Earth Koshchei, also tracked as APT29 or Midnight Blizzard, has been linked to a massive rogue Remote …

1-Click RCE Attack in Kerio Control UTM Let Attackers Gain Root Access To the Firewall

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have identified a critical set of HTTP Response Splitting vulnerabilities in Kerio Control, a widely used Unified Threat Management (UTM) solution developed by GFI Software. The impact is severe, …

Cisco to Acquire Threat Detection Company SnapAttack to Power Splunk

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has announced its acquisition of the threat detection company SnapAttack. This acquisition aims to supercharge Cisco’s ever-expanding security portfolio, particularly by enhancing Splunk—Cisco’s leading Security Information and Event Management (SIEM) …

CISA Warns of Adobe & Windows Kernel Driver Exploited in Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an important warning after adding two critical vulnerabilities to its Known Exploited Vulnerabilities Catalog. These vulnerabilities flagged due to active evidence …

Kali Linux 2024.4 Released With New Hacking Tools – What’s Inside!

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The much-anticipated final release of Kali Linux for 2024.4 is here, packed with many updates, new hacking tools, and powerful features, from a new default Python version to the discontinuation …

Windows Kernel Vulnerability Actively Exploits in Attacks to Gain System Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, one of which belongs to a Windows kernel vulnerability actively used in …

Arctic Wolf Acquires BlackBerry’s Cylance Assents For $160 Million in Cash

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a significant move that will reshape the cybersecurity landscape, Arctic Wolf and BlackBerry Limited (NYSE: BB; TSX:BB) announced today that they have entered into a definitive agreement for Arctic …