A threat actor has claimed to have gained unauthorized access to API keys for major cloud service providers, including Amazon Web Services (AWS), Microsoft Azure, MongoDB, and GitHub. The announcement …
LastPass is Encrypting URLs Used with Password Vaults
LastPass, a widely used password manager trusted by millions of consumers and businesses globally, has announced an upgrade to its security measures, the encryption of URLs within its password vaults. …
End of VBScript! Microsoft Replacing it With Advanced Alternatives
Microsoft has officially announced the gradual deprecation of VBScript, with plans to replace it with more advanced alternatives such as JavaScript and PowerShell. The move comes as part of Microsoft’s …
WinRAR Flaw Let Attackers Deceive Users with ANSI Escape Sequences
A critical vulnerability has been discovered in WinRAR, a popular file compression and archiving utility for Windows. The flaw, tracked as CVE-2024-36052, affects WinRAR versions prior to 7.00 and allows …
GHOSTENGINE Malware Exploits Vulnerable drivers To Terminate EDR Agents
Researchers discovered REF4578, an intrusion set that uses vulnerable drivers to disable established security solutions (EDRs) for crypto mining and deploys a malicious payload known as GHOSTENGINE. GHOSTENGINE is in …
Detecting A Phishing Attack With Help Of Artificial Intelligence
Social engineering email attacks remain a threat despite commercial solutions and user training focused on identifying phishing indicators like urgency, unusual greetings, or inconsistent email addresses. However, training shifts the …
Criminal IP: Enhancing Security Solutions through AWS Marketplace Integration
AI SPERA, a leader in Cyber Threat Intelligence (CTI) solutions, announced today that its proprietary search engine, Criminal IP, is now available on the AWS Marketplace. This integration ensures efficient …
Researchers Detailed How Letmeowin Harvest Credentials From Windows Systems
Security researcher Meowmycks unveiled a new tool named LetMeowIn, designed to harvest credentials from the Local Security Authority Subsystem Service (LSASS) process on Microsoft Windows systems. This tool has raised …
PoC Exploit Released for Critical Git RCE Vulnerability
A critical vulnerability in Git, identified as CVE-2024-32002, has recently come to light, posing significant risks to users of the widely used version control system. The vulnerability allows for remote …
Chrome Security Update : Patch for High Severity Flaws
Google has recently rolled out a crucial security update for its Chrome web browser, applicable to Windows, Mac, and Linux operating systems. This update aims to rectify various vulnerabilities, with …



