Check Point Research has exposed a recent wave of cyberattacks utilizing the infamous Agent Tesla malware. This campaign targeted organizations in the United States and Australia. First appearing in 2014, Agent …
300,000 Chinese Devices in US : 40% Increase Despite Official Bans
Chinese devices are suspected of administering cyber espionage due to concerns over potential backdoors, supply chain vulnerabilities, and the risk of tampering. State-sponsored cyber threats, such as viral memes, are …
Hackers Hijacking YouTube Channels to Steal Your Data
Cybercriminals are increasingly exploiting YouTube, a platform beloved by millions, to produce sophisticated malware attacks. These threat actors, leveraging the impression of free software and video game enhancements, target unsuspecting …
Hackers Claiming of Working Windows 0-Day LPE Exploit
A new claim has surfaced on the internet regarding a zero-day exploit that targets the Windows operating system. This exploit, which enables local privilege escalation (LPE), could allow attackers to …
WordPress Plugin SQl Injection Exposes 1,000,000 Sites to Cyber Attack
Over a million WordPress websites have been at risk due to a critical SQL Injection vulnerability discovered in the popular LayerSlider plugin. The flaw, CVE-2024-2879, could allow unauthenticated attackers to …
Feds Stepping to Patch Years-old SS7 Vulnerability in Phone Networks
The FCC (Federal Communications Commission) seeks public input regarding measures by communications providers to address vulnerabilities in SS7 and Diameter protocols that enable tracking consumers’ mobile device locations without consent. …
Aembit Selected as Finalist for RSA Conference 2024 Innovation Sandbox Contest
The Leading Company for Securing Access Between Workloads Recognized for the Aembit Workload IAM Platform Aembit, the Workload Identity and Access Management (IAM) Company, has been named one of the …
‘The Manipulaters’ Improve Phishing, Still Fail at Opsec
Roughly nine years ago, KrebsOnSecurity profiled a Pakistan-based cybercrime group called “The Manipulaters,” a sprawling web hosting network of phishing and spam delivery platforms. In January 2024, The Manipulaters pleaded …
WP-Members Plugin Expose WordPress Sites To Injection Attacks
A security researcher reported a critical vulnerability in the WP-Members Membership Plugin that allows attackers to inject malicious scripts and potentially take over websites. Administrators could take advantage of the …
StrelaStealer Attacking Users to Steal Logins from Outlook & Thunderbird
A sophisticated variant of StrelaStealer malware has been identified, targeting Spanish-speaking users with the primary aim of pilfering email account credentials from popular email clients Outlook and Thunderbird. This updated …




