Although the use of peripheral devices has risen to unparalleled rates in the post-pandemic period, many organizations have failed to increase their cybersecurity efforts to match this usage. Do you …
Multiple Flaws in VMware Aria Operations Let Attackers Bypass Authentication
As per reports, VMware has been reported with two critical vulnerabilities that could allow threat actors to perform an authentication bypass and gain arbitrary write access on VMware Aria Operations …
OpenAI Released ChatGPT Enterprise With SOC 2 Compliant & Data Encryption
Several reports have indicated data leakage from ChatGPT ever since its release by the Microsoft-backed OpenAI in November 2022. Additionally, threat actors have been abusing the platform to gain unauthorized …
Top 3 Malware Loaders of 2023 that Fueling 80% of Cyber Attacks
SOC teams find malware loaders challenging, as the different loaders, even for the same malware, need distinct mitigation. Besides this, they are the key and most important elements for initial …
U.S. Hacks QakBot, Quietly Removes Botnet Infections
The U.S. government today announced a coordinated crackdown against QakBot, a complex malware family used by multiple cybercrime groups to lay the groundwork for ransomware infections. The international law enforcement …
Hackers using HTML Smuggling Technique to Deliver Ransomware and Evade Detection
Threat actors adopt the highly invasive techniques of HTML smuggling to launch Nokoyawa ransomware despite being delivered through macro and ICedID malware. The Nokoyawa Ransomware variant has been active since …
How Hackers Abusing ChatGPT Features For Their Cybercriminal Activities – Bypass Censorship
Media and frequent innovative releases aggressively fuel the rapid industry rise of generative AI (Artificial Intelligence) ChatGPT. But, besides its innovative part, cybercriminals have also actively exploited these generative AI …
DreamBus Botnet Exploiting RCE Flaw in Apache RocketMQ Servers
A vulnerability affecting Apache RocketMQ servers was publicly disclosed in May 2023, allowing remote code execution through a gateway. RocketMQ is a cloud-native platform for messaging and streaming. The command …
Tor Announces Proof-of-Work Defense to Defend Against DoS Attacks
Tor (The Onion Router) has officially introduced a Proof-of-Work (PoW) mechanism to defend from attackers doing Denial of Service attacks. Users worldwide have widely adopted Tor for hiding their IP …
Multiple Notepad++ Flaws Let Attackers Execute Arbitrary Code
Several Buffer Overflow vulnerabilities have been discovered in Notepad++ that can be exploited by threat actors for malicious purposes. The severities of these vulnerabilities vary from 5.5 (Medium) to 7.8 …

