ArcaneDoor Exploiting Cisco Zero-Days To Attack Government Networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers target Cisco zero-days as they can abuse the widely used networking equipment that contains vulnerabilities which means they can affect many systems and networks in one shot.  Attackers use …

KnowBe4 to Acquire Egress for Aids in Email Awareness Training

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

KnowBe4, the leader in security awareness training and simulated phishing platforms, has announced its definitive agreement to acquire Egress, a pioneer in adaptive and integrated cloud email security. This acquisition …

Google Meet Now Allows Non-Google Account Users to Join Encrypted Calls

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has announced that external participants without Google accounts can join client-side encrypted Google Meet calls. This move marks a substantial step in balancing user accessibility with robust security measures. …

Volkswagen Hacked – Hackers Stolen 19,000 Documents From VW Server

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Volkswagen, one of the world’s leading automotive manufacturers, has fallen victim to a sophisticated hacking operation in a significant cybersecurity breach. Investigations suggest that the cyberattack originated in China, raising …

Beware Of Fake MetaMask Android Apps That Steal Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors exploit fake Android apps primarily for illicit reasons, such as stealing sensitive and personal information from unsuspecting users. Besides this, these fake apps often mimic legitimate ones to …

CrushFTP Zero-Day Could Allow Attackers To Gain Complete Server Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

CrushFTP disclosed a zero-day vulnerability (CVE-2024-4040) affecting versions below 10.7.1 and 11.1.0. The vulnerability allows remote attackers with low privileges to bypass the VFS sandbox and read arbitrary files on …

IBM QRadar XSS Flaw Let Attackers Arbitrary JavaScript Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A significant vulnerability was detected in IBM QRadar Suite Software and Cloud Pak for Security, allowing attackers to execute arbitrary JavaScript code. An attacker can insert harmful executable scripts into …

Seedworm Hackers Exploit RMM Tools to Deliver Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious hacking group Seedworm, also known as MuddyWater, has been found exploiting legitimate remote monitoring and management (RMM) tools to orchestrate sophisticated malware attacks. This revelation underscores a significant …

WordPress Plugin Flaw Exposes 10k+ Websites to Cyber Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in the WP Datepicker WordPress plugin was identified, affecting over 10,000 active installations.  This Arbitrary Options Update vulnerability (CVE-2024-3895) has been assigned a CVSS score of 8.8, …