Imagine receiving an email that looks legitimate, down to the last detail. This is the deceptive power of the new FishXProxy Phishing Kit, a sophisticated toolkit emerging from underground cybercrime. …
Beware of Phishing Attack that Abuses SharePoint Servers
A massive phishing campaign exploits Microsoft SharePoint servers to host malicious PDFs containing phishing links. As observed by ANY.RUN sophisticated attack has seen an alarming surge, with over 500 public …
Apple Warns of Users in 98 Countries of Targeted Spyware Attacks
Apple has alerted iPhone users in 98 countries about potential mercenary spyware attacks. This marks the tech giant’s second such alert campaign this year, following a similar notification sent to …
Citrix NetScaler ADC & Gateway Impacted by regreSSHion RCE Vulnerability
Qualys discovered a critical remote unauthenticated code execution (RCE) vulnerability, CVE-2024-6387, in OpenSSH’s server (sshd). This vulnerability, known as regreSSHion, is a regression of the previously patched CVE-2006-5051 and affects …
4000+ Domains Used By FIN7 Actors Mimic Popular Brands
Russian-linked FIN7 (aka Sangria Tempest, ATK32, Carbon Spider, Coreid, ELBRUS, G0008, G0046, and GOLD NIAGARA) is a financial cybercrime group that has been around since 2013 and it specifically targets …
CISA Warns of Hackers Exploiting OS Command Injection Vulnerabilities
The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have raised alarms about hackers exploiting OS command injection vulnerabilities. These vulnerabilities, a constant issue in …
VMware Aria Automation Flaw Let Hackers Perform SQL Injection Attacks
VMware has released security updates to address a critical SQL injection vulnerability in its Aria Automation product. The vulnerability tracked as CVE-2024-22280, could allow authenticated attackers to perform unauthorized database …
Critical PHP Vulnerability CVE-2024-4577 Actively Exploited in the Wild
A critical vulnerability in PHP, tracked as CVE-2024-4577, is being actively exploited by threat actors in wild just days after its public disclosure in June 2024. The flaw affects PHP …
Threat Actor Claims to have Unauthorized Fortinet VPN Access to 50+ Organizations
A threat actor has claimed to possess unauthorized access to Fortinet VPNs of over 50 organizations in the United States. The alarming announcement was made via a post on the …
Lulu Hypermarket Data Breach: 196,000 Users’ Data Exposed
Lulu Hypermarket, one of the largest retail chains in the Middle East, has been the victim of a significant data breach. The breach has exposed the personal data of approximately …










