GEOBOX is specialized software designed for Raspberry Pi devices that have been observed on the Dark Web being marketed as the next major development in fraud and anonymity technologies. Cybercriminals …
MobSF Pen-Testing Tool Input Validation Flaw Leads to SSRF
The Mobile Security Framework (MobSF), a widely used pen-testing, malware analysis, and security assessment framework, has been found to contain a critical input validation flaw that could lead to server-side …
XSS Vulnerability in Google Subdomain Let Hackers Hijacks the User Sessions
Security researcher Henry N. Caga has identified a significant cross-site scripting (XSS) vulnerability within a Google sub-domain that allows hackers to perform various attacks, including session hijacking, phishing attacks, malware …
Unsaflok Flaw Let Attackers Open Million of Doors in Seconds
Unsaflok, in Dormakaba’s Saflok electronic RFID locks used in hotels and multi-family housing, allows attackers to forge a master keycard by exploiting weaknesses in the system and then using it …
Mozilla Drops Onerep After CEO Admits to Running People-Search Networks
March 22, 2024 0 Comments The nonprofit organization that supports the Firefox web browser said today it is winding down its new partnership with Onerep, an identity protection service recently …
5 Steps to Effective Junior SOC Specialist Training in 2024
The Security Operations Center (SOC) is critical to any organization’s cybersecurity strategy. Every SOC’s success hinges on the competence of its team members. This article provides a five-step training blueprint …
Air Europa Announces Potential Compromise of Customer Data
Air Europa, a prominent Spanish airline, has announced a potential compromise of its customers’ data following a security incident detected in October of the previous year. This incident has raised …
CISA & FBI Released Guide to Respond for DDoS Attacks
The Cybersecurity and Infrastructure Security Agency (CISA), in collaboration with the Federal Bureau of Investigation (FBI) and the Multi-State Information Sharing and Analysis Center (MS-ISAC), has released a comprehensive guide. …
AcidPour Attacking Linux Systems Running On x86 Architecture
Linux systems are used widely for servers, cloud environments, and IoT devices, which makes them an attractive target to cybercriminals, just as they are for any other platform. Its extensive …
New Sysrv Botnet Abuses Google Subdomain To Spread XMRig Miner
First identified in 2020, Sysrv is a botnet that uses a Golang worm to infect devices and deploy cryptominers, propagates by exploiting network vulnerabilities, and has been continuously updated with …


