Critical RCE Flaws Affect VMware ESXi and vSphere Client — Patch Now

Blog WriterThe Hacker News - Original news source is thehackernews.com

VMware has addressed multiple critical remote code execution (RCE) vulnerabilities in VMware ESXi and vSphere Client virtual infrastructure management platform that may allow attackers to execute arbitrary commands and take …

Shadow Attacks Let Attackers Replace Content in Digitally Signed PDFs

Blog WriterThe Hacker News - Original news source is thehackernews.com

Researchers have demonstrated a novel class of attacks that could allow a bad actor to potentially circumvent existing countermeasures and break the integrity protection of digitally signed PDF documents. Called …

Hackers Exploit Accellion Zero-Days in Recent Data Theft and Extortion Attacks

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers on Monday tied a string of attacks targeting Accellion File Transfer Appliance (FTA) servers over the past two months to data theft and extortion campaign orchestrated by a cybercrime group …

Chinese Hackers Had Access to a U.S. Hacking Tool Years Before It Was Leaked Online

Blog WriterThe Hacker News - Original news source is thehackernews.com

On August 13, 2016, a hacking unit calling itself “The Shadow Brokers” announced that it had stolen malware tools and exploits used by the Equation Group, a sophisticated threat actor …

How to Fight Business Email Compromise (BEC) with Email Authentication?

Blog WriterThe Hacker News - Original news source is thehackernews.com

An ever-evolving and rampant form of cybercrime that targets emails as the potential medium to conduct fraud is known as Business Email Compromise. Targeting commercial, government as well as non-profit …

New ‘Silver Sparrow’ Malware Infected Nearly 30,000 Apple Macs

Blog WriterThe Hacker News - Original news source is thehackernews.com

Days after the first malware targeting Apple M1 chips was discovered in the wild, researchers have disclosed yet another previously undetected piece of malicious software that was found in about 30,000 Macs …

Masslogger Trojan Upgraded to Steal All Your Outlook, Chrome Credentials

Blog WriterThe Hacker News - Original news source is thehackernews.com

A credential stealer infamous for targeting Windows systems has resurfaced in a new phishing campaign that aims to steal credentials from Microsoft Outlook, Google Chrome, and instant messenger apps. Primarily …

New Hack Lets Attackers Bypass MasterCard PIN by Using Them As Visa Card

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers have disclosed a novel attack that could allow criminals to trick a point of sale terminal into transacting with a victim’s Mastercard contactless card while believing it to be a …