Cisco Nexus Dashboard Fabric Controller is a network management platform for all NX-OS-enabled devices. It enables data center operation teams to perform deep-dive troubleshooting and maintenance operations. A new vulnerability …
Meet The New Qakbot DLL That Abuses Windows Process For persistence
Law enforcement dismantled the Qakbot botnet’s servers in 2023’s Operation Duck Hunt, but researchers identified its reemergence with a modified DLL, which utilizes the srtasks.exe process for persistence, ensuring its …
Splunk vs Cribl Lawsuit of Terms Violating Enterprise License
The Splunk-Cribl lawsuit is poised to go to trial. Both companies are suing over alleged violations of enterprise license terms. The case, brewing since October 2022, has now escalated to …
JsOutProx Malware Abusing GitLab To Attack Financial Institutions
GitLab is a prominent web-based Git repository manager that is exploited by hackers to gain unauthorized access to confidential source code, steal intellectual property or insert malicious code into projects …
Hackers Hijacked Notepad++ Plugin To Inject Malicious Code
Hackers have manipulated a popular Notepad++ plugin, injecting malicious code that compromises users’ systems upon execution. The AhnLab Security Intelligence Center (ASEC) researchers have revealed that the “mimeTools.dll” plugin, which …
Hackers Use Weaponized PDF Files to Deliver Byakugan Malware on Windows
Due to their high level of trust and popularity, hackers frequently use weaponized PDF files as attack vectors. Even PDFs can contain harmful codes or exploits that abuse the flaws …
Multiple Chinese Hacking Groups Exploiting Ivanti Connect Secure VPN Flaw
Cybersecurity firm Mandiant has uncovered a series of sophisticated cyberattacks targeting Ivanti Connect Secure VPN appliances. These attacks, attributed to multiple Chinese nexus espionage groups, exploit critical vulnerabilities to facilitate …
Magento Vulnerability Let Attackers Inject Backdoor On E-commerce Websites
A sophisticated vulnerability within the Magento ecommerce platform has been unveiled, posing a significant threat to online merchants and shoppers alike. The vulnerability, identified as CVE-2024-20720, allows attackers to inject …
Hackers Claiming XpressBees Data Leak: 95K User Personal Data Leaked
The logistics and supply chain company XpressBees has become the latest victim of a data breach. A user by the alias “IntelBroker” on the notorious BreachForums community has claimed responsibility …
Apache HTTP Server Flaw Let Attackers Inject Malicious Headers Amd HTTP/2 DoS
Apache released updates to address several vulnerabilities impacting the Apache HTTP server that let attackers launch HTTP/2 DoS attacks and insert malicious headers. Server operations are being adversely affected by these …




