AT&T Reveals Massive Breach Affecting Nearly All Customers’ Call & Text Records

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AT&T, one of the largest telecommunications companies in the United States, has disclosed a significant data breach that exposed the call and text records of nearly all its cellular customers. …

FishXProxy Fuels Phishing Attacks with Clever Deceptive Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Imagine receiving an email that looks legitimate, down to the last detail. This is the deceptive power of the new FishXProxy Phishing Kit, a sophisticated toolkit emerging from underground cybercrime. …

Beware of Phishing Attack that Abuses SharePoint Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive phishing campaign exploits Microsoft SharePoint servers to host malicious PDFs containing phishing links. As observed by ANY.RUN sophisticated attack has seen an alarming surge, with over 500 public …

Apple Warns of Users in 98 Countries of Targeted Spyware Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Apple has alerted iPhone users in 98 countries about potential mercenary spyware attacks. This marks the tech giant’s second such alert campaign this year, following a similar notification sent to …

Citrix NetScaler ADC & Gateway Impacted by regreSSHion RCE Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Qualys discovered a critical remote unauthenticated code execution (RCE) vulnerability, CVE-2024-6387, in OpenSSH’s server (sshd). This vulnerability, known as regreSSHion, is a regression of the previously patched CVE-2006-5051 and affects …

CISA Warns of Hackers Exploiting OS Command Injection Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have raised alarms about hackers exploiting OS command injection vulnerabilities. These vulnerabilities, a constant issue in …

VMware Aria Automation Flaw Let Hackers Perform SQL Injection Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VMware has released security updates to address a critical SQL injection vulnerability in its Aria Automation product. The vulnerability tracked as CVE-2024-22280, could allow authenticated attackers to perform unauthorized database …