Poisoned Google Ads Targeting Infra Teams with Weaponized IP Scanners

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers uncovered a sophisticated malvertising campaign targeting IT professionals, particularly those in security and network administration roles. The threat actor behind this attack has been leveraging Google Ads to …

Xiid SealedTunnel: Unfazed by Yet Another Critical Firewall Vulnerability (CVE-2024-3400)

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the wake of the recent disclosure of a critical vulnerability (CVE-2024-3400) affecting a leading firewall solution, Xiid Corporation reminds organizations that Xiid SealedTunnel customers remain secure. This latest vulnerability, …

“Mobile NotPetya”!! Surge in Zero-click Vulnerabilities, Conditions Favour

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The cybersecurity community is sounding the alarm about the growing risk of a “mobile NotPetya” event – a self-propagating mobile malware outbreak that could have devastating consequences. Over the past …

Hackers Attempted To Takeover JavaScript Project From OpenJS Foundation

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers tried to take over the JavaScript project from OpenJS Foundation, which is home to JavaScript projects utilized by billions of websites globally.  This is similar to the incident that was …

Data Center Ransomware Attacks on Rise: Microsoft SQL Server Prime Target

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ransomware threats are increasingly targeting data center servers and workloads as the initial step in the attack chain. These systems may not be up-to-date with recommended patches, often run legacy …

Alert! Oracle Releases Critical Patch Update 2024 – 372 Vulnerabilities are Fixed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Oracle has released its Critical Patch Update (CPU) for April 2024, addressing 372 vulnerabilities across multiple products. The Critical Patch Update provides fixes for security flaws in widely-used Oracle products …

Hackers Exploiting TP-Link Archer Command Injection Vulnerability in the Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered widespread exploitation of a critical vulnerability in TP-Link Archer routers, which has led to the proliferation of botnet threats. The vulnerability, CVE-2023-1389, allows attackers to execute …