Facebook and MS Console are often targeted by hackers, as they contain a lot of personal and sensitive data that can be used for identity theft, phishing, and other harmful …
Beware of Fake Google Chrome Update Pop-Ups that Installs Malware
In the ever-changing cybersecurity landscape, a persistent threat appears in the form of a fake Chrome update. Usually, these efforts involve injecting harmful code into a website, which prompts individuals …
270GB of New York Times Internal Data and Source Code Leaked
An anonymous hacker has claimed to have leaked 270 GB of internal data and source code from The New York Times (NYT) on the controversial image board 4chan. The leak, …
Hackers Attack ThinkPHP By Injecting Payload From Remote Servers
Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently, Akamai researchers have noted a concerning trend of attackers exploiting known vulnerabilities, such …
TotalRecall: A New Tool that Extracts Dara From Windows 11 Recall Feature
Microsoft’s Windows Recall is a new feature for Copilot+ PCs, announced in May 2024. It takes periodic screenshots (every 5 seconds when screen content changes) and stores them locally on …
Wineloader Mimic As Ambassador Of India To Start The Infection Chain
ARC Labs delved into the intricacies of the Wineloader backdoor, a sophisticated tool used in spearphishing campaigns linked to the notorious APT29 group, also known as NOBELIUM or COZY BEAR. …
Huge Surge in Attacks Exploiting Check Point VPN Zero-Day Vulnerability
Check Point published an advisory regarding a critical vulnerability, CVE-2024-24919, which has since seen a surge in exploitation attempts. The vulnerability, rated with a CVSS score of 8.6, allows attackers …
PoC Exploit Released for High Severity Apache HugeGraph RCE flaw
A proof-of-concept (PoC) exploit has been released for a high-severity Remote Code Execution (RCE) vulnerability in the Apache HugeGraph Server. This vulnerability, identified as CVE-2024-27348, affects versions of HugeGraph Server …
Microsoft to Disable NTLM, Transition to Kerberos Authentication
Microsoft has made an announcement regarding the gradual phasing out of all versions of NTLM (NT LAN Manager). This decision is part of Microsoft’s ongoing efforts to harden Windows against …
Cisco Finesse Vulnerabilities Let Attackers Perform Stored XSS Attack
Cisco has issued a security advisory detailing multiple vulnerabilities in Cisco Finesse’s web-based management interface. These vulnerabilities, identified as CVE-2024-20404 and CVE-2024-20405, could allow unauthenticated, remote attackers to perform a …



