FortiOS Vulnerability Let Attackers to Execute Unauthorized Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet has disclosed multiple stack-based buffer overflow vulnerabilities (CVE-2024-23110) in FortiOS’s command line interpreter. These vulnerabilities could allow authenticated attackers to execute unauthorized code or commands. Gwendal Guégniaud of the …

Authorities Arrest Encryption Specialist Behind Conti & LockBit Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ukrainian cyber police have arrested a 28-year-old man from Kyiv, identified as a key figure in the development of cryptors used by the notorious Conti and LockBit ransomware groups. Authorities …

Microsoft Security Update : RCE, Privilege Escalation Flaws Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The June 2024 Patch Tuesday update from Microsoft addressed almost 49 vulnerabilities in its products and 9 vulnerabilities in non-Microsoft products.  The update includes a critical vulnerability in Microsoft Message …

Black Basta Actors Exploited Windows Zero-day Privilege Escalation Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cardinal cybercrime group (aka Storm-1811, UNC4393), which operates the Black Basta ransomware, may have been exploiting a recently patched Windows privilege escalation vulnerability as a zero-day. CVE-2024-26169: The Vulnerability …

CISA Urges Administrators To Review Newly Released Six ICS Advisories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a call to action for administrators and security professionals to review six newly released Industrial Control Systems (ICS) advisories. These advisories, …

VLC Media Player Vulnerabilities Allow Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VideoLAN, the organization behind the popular VLC Media Player, has disclosed multiple critical vulnerabilities that could allow attackers to execute arbitrary code remotely. These vulnerabilities affect both the desktop and …

ComfyUI Users Targeted by Malicious Code Designed to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The research team has recently reported a concerning incident involving the popular Stable Diffusion user interface, ComfyUI. This event has sent shockwaves through the AI community, highlighting the potential dangers …