Ivanti Connect Secure was previously discovered with another SSRF vulnerability that could allow unauthenticated threat actors to access unrestricted resources due to a flaw in the SAML module. The vulnerability …
Coyote Malware Leverage NodeJS to Attack Users of 60+ Bank Users
In banking attacks, threat actors actively exploit the NodeJS to steal the online banking credentials of the targeted users. Threat actors use JavaScript web injections to alter the login page …
Beware of Stealthy Raspberry Robin That Delivered as a Windows Component
Raspberry Robin is a malicious worm that spreads through USB drives, and it’s been actively used by the threat actors to download and install hidden malware on Windows systems. Besides …
New Malware Mimic as Visual Studio Update to Attack macOS users
A new backdoor written in Rust has been discovered to target macOS users with several interesting features. Moreover, there have been 3 variants of backdoor found masquerading under the name …
Rise of Malicious Black Hat AI Tools That Shifts The Nature Of Cyber Warfare
The rise of malicious versions of LLMs, like dark variants of ChatGPT, is escalating cyber warfare by enabling more sophisticated and automated attacks. These models can generate convincing phishing emails, …
New Stealthy Zardoor Malware Uses Reverse Proxy Tools to Evade Detection
A new malware has been reported to be distributed by threat actors, which is likely known to be a stealthy espionage campaign going on since March 2021. This new malware …
Juniper Support Portal Exposed Customer Device Info
February 9, 2024 0 Comments Until earlier this week, the support website for networking equipment vendor Juniper Networks was exposing potentially sensitive information tied to customer products, including which devices …
Fortinet Warns of Critical SSL VPN Flaw Exploited Actively in the Wild
Fortinet has issued a warning regarding a critical out-of-bounds write vulnerability in FortiOS. Remote attackers can exploit this vulnerability to execute arbitrary code, posing a significant security threat. A vulnerability …
Beware of Fake LastPass Password Manager App That Steals Personal Information
Customers of LastPass have been alerted of a fraudulent app on the Apple App Store that poses as the legitimate LastPass app in an attempt to steal personal data. Instead of …
10 Best Network as a Service (NaaS) for MSSP Providers – 2024
Network as a Service (NaaS) for Managed Security Service Providers (MSSPs) offers a revolutionary way to provide networking and security services to clients. This model enables MSSPs to provide network …

