Hackers Using ProxyLogon & ProxyShell To Attack Microsoft Exchange Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers attack Microsoft Exchange servers because they often contain sensitive communication data that can be exploited for several illicit purposes. Besides this, the widespread use of Microsoft Exchange in enterprises …

Logsign Unified SecOps RCE Vulnerabilities Let Attackers Gain Control of the System

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Logsign, a web server built on Python for Unified Security Operations (SecOps), has successfully addressed critical vulnerabilities that could potentially enable threat actors to gain full control over the system. …

Beware of Open-Source Neptune Stealer Delivered Via GitHub

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity analysts have identified a new malware strain known as Neptune Stealer. This malicious software, designed to steal sensitive information from infected systems, is being distributed openly via GitHub, a …

New SnailLoad Side-Channel Attack Let Hackers Monitor Your Web Activity

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often monitor web activities to gather several types of confidential data. By tracking your online activities, hackers can tailor phishing schemes and social engineering attacks, which will increase their …

Kematian Stealer Abuses Powershell Tool for Covert Data Exfiltration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Kematian Stealer has emerged as a sophisticated PowerShell-based malware that covertly exfiltrates sensitive data from compromised systems. This article delves into the intricate workings of this malicious tool, highlighting …

New Volcano Demon Ransomware Group Threatening Victims Over Phone Call

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A novel malware known as Volcano Demon has been observed targeting Windows workstations and servers, obtaining administrative credentials from the network. The threat actor doesn’t have a leak site and …

Beware Of Malicious PDF Files That Mimic As Microsoft 2FA Security Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Malware authors are exploiting the growing popularity of QR codes to target users through PDF files, where these malicious PDFs, often delivered via email disguised as faxes, contain QR codes …

Critical OpenStack Arbitrary File Access Flaw Exposes Cloud Data to Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been identified in OpenStack, a widely used open-source cloud computing platform. The flaw tracked as CVE-2024-32498, allows authenticated attackers to gain unauthorized access to arbitrary …

Mallox Ransomware Attacking Linux Servers In Wild – Decryptor Uncovered

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Linux servers often provide hosting for critical applications, websites, and databases, which makes them a lucrative target for intruders to get unauthorized access to steal data and manipulate services. Exploiting …

Malicious QR Reader App in Google Play Delivers Anatsa Banking Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have identified a malicious QR code reader app on Google Play that is delivering the notorious Anatsa banking malware. This discovery underscores the persistent threat posed by malicious …