Medusa Ransomware Exploiting Fortinet Flaw For Sophisticated Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious Medusa ransomware group has been exploiting a critical vulnerability in Fortinet’s FortiClient EMS software to launch sophisticated ransomware attacks. The SQL injection flaw, tracked as CVE-2023-48788, allows attackers …

Azure API Management Vulnerability Let Users Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability was recently discovered in Azure API Management (APIM) that allowed users with Reader-level access to escalate their privileges to the equivalent of Contributor-level access. This security flaw …

Kawasaki Europe Confirms Cyber Attack, RansomHub Claims Responsibility

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Kawasaki Motors Europe (KME) has officially confirmed it was the target of a cyberattack in early September, causing temporary disruptions to its operations. The company stated that while the attack …

New GAZEploit Attack Let Hackers Capture Keystrokes from Apple Vision Pro

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A novel security vulnerability dubbed “GAZEploit” has been discovered that could allow hackers to capture keystrokes from Apple Vision Pro’s virtual keyboards. The attack exploits the eye-tracking technology used for …

Citrix Workspace App Vulnerabilities Allow Privilege Escalation Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Citrix has released security updates to address two critical vulnerabilities, tracked as CVE-2024-7889 and CVE-2024-7890, affecting the Citrix Workspace app for Windows. These flaws could allow local attackers to gain …