New BadRAM Attack Exploits AMD SEV Protections, Threatens Cloud Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have uncovered a critical vulnerability in AMD’s Secure Encrypted Virtualization (SEV) technology that could compromise sensitive data in cloud environments. Dubbed “BadRAM,” this attack leverages rogue memory modules to …

Splunk Secure Gateway App Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability has been discovered in the Splunk Secure Gateway app, potentially allowing low-privileged users to execute arbitrary code remotely. The flaw, identified as CVE-2024-53247, affects multiple versions of …

How Cryptocurrency Turns to Cash in Russian Banks

Blog WriterCybersecurity News - Original News Source is krebsonsecurity.com

A financial firm registered in Canada has emerged as the payment processor for dozens of Russian cryptocurrency exchanges and websites hawking cybercrime services aimed at Russian-speaking customers, new research finds. …

Critical Windows UI Automation Framework Vulnerability Let Hackers Bypass EDR

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a novel attack method that exploits Microsoft’s UI Automation framework, potentially leaving millions of Windows users vulnerable. This technique, discovered by Akamai security researcher Tomer Peled, …

WhatsApp, Facebook, Instagram Down – Massive Outage Hits Meta Worldwide

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Meta’s suite of popular apps, Facebook, Instagram, WhatsApp, and Threads, experienced significant technical disruptions on Wednesday afternoon, with thousands of users globally reporting outages on the platform status tracking site, …

ONLY Cynet Delivers 100% Protection & Detection Visibility in 2024 MITRE ATT&CK Evaluation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Across small-to-medium enterprises (SMEs) and managed service providers (MSPs), the top priority for cybersecurity leaders is to keep IT environments up and running. To guard against cyber threats and prevent …

Fortinet Acquired Perception Point to Boost Email Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet, a global leader in cybersecurity solutions, today announced the completion of its acquisition of Perception Point, a pioneer in advanced collaboration and email security. This strategic move marks a …

Resecurity introduces Government Security Operations Center (GSOC) at NATO Edge 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Resecurity, a global leader in cybersecurity solutions, unveiled its advanced Government Security Operations Center (GSOC) during NATO Edge 2024, the NATO Communications and Information Agency’s flagship conference. The solution is …

Microsoft Azure MFA Vulnerability Allows Unauthorized User Account Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Microsoft’s Multi-Factor Authentication (MFA) implementation has been uncovered by Oasis Security’s research team, potentially exposing over 400 million Office 365 accounts to unauthorized access. The flaw, …

Researchers Uncovered Zloader DNS Tunneling Tactics For C2 Communication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An updated version of Zloader (2.9.4.0) has been discovered, which includes a Domain Name System (DNS) tunnel for command-and-control (C2) connections, an interactive shell for hands-on keyboard action, and additional …