Hackers always keep evolving their tools to stay ahead of defense systems and exploit new vulnerabilities. Cybersecurity researchers at Trend Micro reported that the Earth Hundun (BlackTech) cyberespionage group has …
Apache Kafka Flaw Let Attackers Gain Access To Sensitive Data
A new incorrect access control vulnerability has been discovered in Apache Kafka that could allow threat actors to compromise the CIA (Confidentiality, Integrity, and Availability) on the affected resource. This …
Palo Alto Networks PAN-OS Zero-day Under Active Attack
In a recent security alert, Palo Alto Networks has disclosed a critical vulnerability within its PAN-OS operating system, identified as CVE-2024-3400. This zero-day flaw, found in the GlobalProtect Gateway, is …
DuckDuckGo Launches Privacy Pro : 3-In-1 Service With VPN
DuckDuckGo is a search engine that takes users’ privacy seriously. It does not track or store personal information. For those who value their privacy, DuckDuckGo stands out because it does …
Wiz to Acquire Gem Security for $350M to Address Cloud Security
Wiz, a leading cloud security company, has announced its acquisition of Gem Security for $350 million. This acquisition marks a significant milestone in Wiz’s journey, which began just four years …
Critical Bitdefender Vulnerabilities Let Attackers Gain Control Over System
Bitdefender GravityZone Update Server (versions 6.36.1, Endpoint Security for Linux 7.0.5.200089, and Endpoint Security for Windows 7.9.9.380) is vulnerable to server-side request forgery (SSRF) due to an incorrect regular expression. …
Ukrainian Hackers Hijacked 87,000 Sensors to Shut down Sewage System
Ukrainian hackers have successfully infiltrated and disabled a vast network of industrial sensors and monitoring infrastructure in Russia, leading to a significant shutdown of sewage systems, among other utilities. The …
Zscaler Acquires Airgap Networks to Enhance Zero Trust SASE
Zscaler has announced the acquisition of Airgap Networks, a company renowned for its agentless segmentation technology. This acquisition is set to redefine the way enterprises protect their internal traffic, particularly …
Why CISA is Warning CISOs About a Breach at Sisense
April 11, 2024 0 Comments The U.S. Cybersecurity and Infrastructure Security Agency (CISA) said today it is investigating a breach at business intelligence company Sisense, whose products are designed to …
Critical Node.js Flaw Lets Attackers Execute Malicious Code on Windows Machines
Node.js project disclosed a high-severity vulnerability affecting multiple active release lines of its software on Windows platforms. This flaw, identified as CVE-2024-27980, allows attackers to execute arbitrary commands on affected …










