Leeds Equity Partners Acquires Cybersecurity Training Firm OffSec

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Leeds Equity Partners (“Leeds Equity”) announced today that it has acquired OffSec (the “Company”), the leading provider of continuous cybersecurity workforce development training and professional education for cybersecurity practitioners from …

Hackers Using Bitbucket Code Hosting Platform To Host Malicious Payloads

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a sophisticated malware campaign exploiting Bitbucket, a popular code hosting platform, to deliver dangerous payloads to unsuspecting victims. The attackers are leveraging Bitbucket’s legitimate reputation to …

SideWinder APT Hackers Added New Post-Exploitation Toolkit to Their Arsenal

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers at Kaspersky have uncovered a significant expansion in the capabilities of the SideWinder advanced persistent threat (APT) group. In a report published on October 15, 2024, the Kaspersky …

ExoneraTor Tool Detects IP Address Linked With Tor Network, Uncovers Volt Typhoon

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Volt Typhoon is a Chinese state-sponsored hacking group that has been active since at least mid-2021, targeting critical infrastructure sectors in the United States and its territories. The group employs …

What is Business Continuity Plan? How it Works!

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Businesses face an array of potential disruptions that can threaten their operations. From natural disasters to cyberattacks, maintaining business functions during unforeseen events is crucial. This is where a Business …

ErrorFather Hackers Attacking Android Users To Take Control Of The Device

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cerberus is an advanced Android banking trojan that emerged in 2019, primarily designed to steal sensitive “financial information.” While this sophisticated trojan is commonly distributed via “malicious apps” and “phishing …

Ubuntu Authd Flaw Let Attackers Spoof User ID

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recently identified vulnerability in Ubuntu’s Authd, CVE-2024-9312, has raised significant security concerns. The flaw, present through version 0.3.6, allows local attackers to spoof user IDs, potentially gaining unauthorized access …

PoC Exploit Released For Windows Kernel-Mode Drivers Privilege Escalation Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Windows Kernel-Mode Drivers has been exposed with the release of a Proof-of-Concept (PoC) exploit, allowing attackers to escalate privileges to SYSTEM level. The vulnerability, identified as …

Nation-State Actors Exploiting Ivanti CSA 0-days To Compromise Victims’ Networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have uncovered a sophisticated attack campaign targeting Ivanti Cloud Services Appliance (CSA) users. Nation-state actors are exploiting multiple zero-day vulnerabilities in the CSA to gain unauthorized access to victims’ …