D-Link NAS Command Injection Flaw : 92,000 Devices Affected

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new command injection vulnerability and a backdoor account have been discovered in D-Link Network Attached Storage devices, which affects D-Link NAS devices, including DNS-340L, DNS-320L, DNS-327L, and DNS-325, among …

HTTP/2 Continuation Flood Attack : Single Machine Can Bring Down Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researcher Bartek Nowotarski disclosed a new class of vulnerabilities within the HTTP/2 protocol, known as the HTTP/2 CONTINUATION Flood. This attack vector is proving to be a significant threat, …

Center Identity Launches Patented Passwordless Authentication for Businesses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Center Identity, a pioneering cybersecurity company, is excited to unveil its patented secret location authentication, reshaping how businesses manage workforce digital identity. This proprietary technology enables users to authenticate their …

Researchers Unveil The Attackers Behind The Agent Tesla Campaign

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Check Point Research has exposed a recent wave of cyberattacks utilizing the infamous Agent Tesla malware. This campaign targeted organizations in the United States and Australia. First appearing in 2014, Agent …

300,000 Chinese Devices in US : 40% Increase Despite Official Bans

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese devices are suspected of administering cyber espionage due to concerns over potential backdoors, supply chain vulnerabilities, and the risk of tampering.  State-sponsored cyber threats, such as viral memes, are …

Hackers Hijacking YouTube Channels to Steal Your Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals are increasingly exploiting YouTube, a platform beloved by millions, to produce sophisticated malware attacks. These threat actors, leveraging the impression of free software and video game enhancements, target unsuspecting …

WordPress Plugin SQl Injection Exposes 1,000,000 Sites to Cyber Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over a million WordPress websites have been at risk due to a critical SQL Injection vulnerability discovered in the popular LayerSlider plugin. The flaw, CVE-2024-2879, could allow unauthenticated attackers to …

Feds Stepping to Patch Years-old SS7 Vulnerability in Phone Networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The FCC (Federal Communications Commission) seeks public input regarding measures by communications providers to address vulnerabilities in SS7 and Diameter protocols that enable tracking consumers’ mobile device locations without consent. …