Zimbra XSS Flaw Allows Hackers to Execute Malicious JavaScript Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw has been discovered in the Zimbra Collaboration Suite (ZCS), potentially allowing hackers to execute malicious JavaScript code. This cross-site scripting (XSS) flaw, identified as CVE-2024-33533, has …

Cyber Alert! Small Businesses Should Enhance Their Cyber Defenses – NCSC Guide (PDF)

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In a recent revelation, law enforcement figures have highlighted a concerning rise in cyber attacks targeting small businesses. The City of London Police reported 1,227 incidents in 2022, which experts …

Brain Cipher Ransomware Analysis & Detection with Cynet’s All-in-One Platform

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

On June 20, 2024, government services were knocked offline as a cyberattack rocked the Indonesian National Data Center. Investigators would attribute the outage to a new hacker group infecting targets …

New Threat Actors Tools Found to be Bypassed Antivirus & Delete Backups

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent Digital Forensics and Incident Response (DFIR) report has uncovered various sophisticated tools threat actors employ to bypass major security defenses. These tools have been found to effectively circumvent …

Undocumented Malware Platform “Cyclops” Lets Hackers to Write Arbitrary Commands on Windows

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have uncovered a new and previously undocumented malware platform named “Cyclops.” Written in the Go programming language, Cyclops has been linked to the notorious hacking group Charming Kitten, also …

NIST Finalised 3 Encryption Tools To Prevent Future Quantum Computers Cyberattacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

NIST, an agency in the federal government of the United States (US), has finished its first draft of cryptographic algorithms that are immune to quantum computer attacks. Quantum computers use …

GitHub Vulnerability “ArtiPACKED” Trigger RCE Exploit to Hack Repositories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The research identifies a critical security vulnerability in GitHub Actions artifacts, enabling unauthorized access to tokens and secrets within CI/CD pipelines.  Misconfigured workflows in major organizations’ public repositories exposed sensitive …

Rivers Of Phish – New Phishing Campaign Attacks Russia Enemies Globally

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In collaboration with Access Now and other civil society organizations, Citizen Lab exposed a sophisticated attack dubbed as “Rivers of Phishing,” a new phishing campaign that attacks Russia’s enemies globally. …

Iranian APT42 Group Launches a Massive Phishing Campaign to Attack U.S. Presidential Election

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Iranian government-backed cyber group APT42 has launched a phishing campaign aimed at disrupting the U.S. presidential election. According to Google’s Threat Analysis Group (TAG), this sophisticated threat actor, associated …