Bitdefender GravityZone Flaw Let Hackers Launch SSRF Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Bitdefender has recently fixed a critical Server-Side Request Forgery (SSRF) vulnerability in its GravityZone Console On-Premise, known as CVE-2024-4177. This flaw, discovered in the host whitelist parser, could have allowed …

Microsoft Made Changes to Recall Feature Following Controversial Security Concerns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has announced significant updates to its new Recall feature for Copilot+ PCs, following a wave of security and privacy concerns raised by experts and users. The Recall feature, set …

Beware of Fake Google Chrome Update Pop-Ups that Installs Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the ever-changing cybersecurity landscape, a persistent threat appears in the form of a fake Chrome update.  Usually, these efforts involve injecting harmful code into a website, which prompts individuals …

Hackers Attack ThinkPHP By Injecting Payload From Remote Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently, Akamai researchers have noted a concerning trend of attackers exploiting known vulnerabilities, such …

Huge Surge in Attacks Exploiting Check Point VPN Zero-Day Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Check Point published an advisory regarding a critical vulnerability, CVE-2024-24919, which has since seen a surge in exploitation attempts. The vulnerability, rated with a CVSS score of 8.6, allows attackers …

PoC Exploit Released for High Severity Apache HugeGraph RCE flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A proof-of-concept (PoC) exploit has been released for a high-severity Remote Code Execution (RCE) vulnerability in the Apache HugeGraph Server. This vulnerability, identified as CVE-2024-27348, affects versions of HugeGraph Server …