Urgent Security Alert! Upstream Supply Chain Attack Lead to SSH Compromise

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security breach has been identified in the xz compression utility’s liblzma library, leading to a significant compromise of SSH server security across various Linux distributions. The xz format …

DNS Tunnel Keylogger – An Offensive Post-Exploitation Tool For Pentesters

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new keylogging server and client tool have been released on GitHub for pentesters. The tool utilizes DNS tunneling to transmit keystrokes through firewalls, potentially evading detection covertly. The tool, …

Hackers Attack macOS Using Infostealer To Steal Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over the past year, macOS users, particularly those in the cryptocurrency sector, have been increasingly targeted by infostealers. These malicious programs aim to harvest credentials and data from crypto wallets. …

AT&T Data Breach: Millions of Customers Data Exposed in Dark Web Leak

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AT&T has confirmed that personal data from approximately 73 million current and former customers has been leaked on the dark web. This confirmation comes after the telecommunications giant initially denied …

Hackers Attack Python Developers by Poising With Typosquat on PyPI

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An automated risk detection system identified a typosquatting campaign targeting popular Python libraries on PyPI. In two waves with a 20-hour break, the attack deployed over 500 variations with typos …

Cyber Security News Weekly Round-Up (Vulnerabilities, Cyber Attacks, Threats & New Stories)

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

This weekly cybersecurity news recap keeps you informed about the latest threats, exposures, mitigation techniques, and emerging malicious tactics that could compromise systems.  Staying updated allows implementing preventive measures proactively …

Lessons Learned from the CISA – Ivanti Cyberattack – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In today’s digital era, the frequency and sophistication of cyberattacks are on the rise, posing a serious threat to businesses and organizations worldwide. Among these incidents, the cyberattack on the …

GitLab Security Flaw Let Attackers Inject Malicious Scripts: Patch Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab has announced the release of updated versions for both its Community Edition (CE) and Enterprise Edition (EE), addressing critical vulnerabilities that could potentially allow attackers to inject malicious scripts …