New Blast-RADIUS Man-In-The-Middle Attack Bypasses Popular RADIUS Authentication

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors carry out man-in-the-middle attacks to intercept, tamper, and manipulate communications between two parties unknown to them.  Consequently, they can acquire private information like credit card details and login …

Microsoft Patch Tuesday July 2024 : 4 Zero-days, 59 Code Execution & 75 Flaws Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft’s July 2024 Patch Tuesday has brought a significant wave of updates, addressing a total of 139 vulnerabilities across various products and components. This release includes 139 new CVEs in …

Critical zero-click RCE Vulnerability Impacts Microsoft Outlook Applications

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Morphisec researchers have discovered a critical zero-click remote code execution (RCE) vulnerability in Microsoft Outlook, designated CVE-2024-38021. Unlike the previously disclosed CVE-2024-30103, this vulnerability does not require authentication, making it …

PoC Exploit Released For Splunk Enterprise Local File Inclusion Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A proof-of-concept (PoC) exploit has been released for a critical local file inclusion vulnerability in Splunk Enterprise, identified as CVE-2024-36991. This vulnerability affects Splunk Enterprise versions below 9.2.2, 9.1.5, and …

Fujitsu Cyber Attack: Customers’ Personal Information Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fujitsu Limited has disclosed the results of an investigation into a cyberattack that potentially exposed customers’ personal information. The breach, first announced on March 15, 2024, was caused by sophisticated …

Exclusive! Analysis of 3 Ransomware Threats Active Right Now 

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ransomware continues to loom large over the cybersecurity landscape, causing significant damage to individuals and organizations alike. With the difficulty of recovering encrypted files and the potential exposure of stolen …

Researcher Exploits Browser Rendering Process to Alter PDF Invoice Pricing

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A cybersecurity researcher, Zakhar Fedotkin, demonstrated how differences in PDF rendering across various browsers and operating systems can be exploited to manipulate the displayed pricing on PDF invoices. This vulnerability …

Massive Truecaller Data Leak Exposes 273 Million Indian Users’ Information

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A massive data leak involving Truecaller, the popular caller ID and spam-blocking app, has reportedly exposed the personal information of 273 million Indian users. The leak, which stems from a …

Windows Notepad Text Editor Gets Spell Check After 41 Years

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has finally introduced spell check and autocorrect features to its venerable Notepad text editor, a staple of the Windows operating system for over four decades. This update significantly enhances …