Chrome Zero-day Vulnerability (CVE-2024-7971) Actively Exploited in The Wild

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google has recently addressed a high-severity zero-day vulnerability in its Chrome browser, identified as CVE-2024-7971. This vulnerability involves a type of confusion issue within the V8 JavaScript engine, which can …

Chipmaker Microchip Hit by Cyber Attack, Operations Impacted

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microchip Technology Incorporated, a leading semiconductor manufacturer, has been hit by a significant cyber attack that has disrupted its operations. The company, which supplies chips to the U.S. defense industry, …

AWS Configuration Vulnerability Exposes Thousands of Web Apps to Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent discovery by Miggo Research has unveiled a critical configuration vulnerability in Amazon Web Services (AWS) that exposes thousands of web applications to potential attacks. This vulnerability, dubbed “ALBeast,” …

TA453 Hackers Using Fake podcast To Deliver New BlackSmith Malware Toolkit

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Iranian threat actor TA453 launched a phishing campaign targeting a prominent religious figure with a fake podcast invitation aiming to deliver a new malware toolkit, BlackSmith, containing a PowerShell trojan …

Critical Slack Vulnerability Let Attackers Steal Data From Private Slack Channels

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered vulnerability in Slack AI could allow attackers to exfiltrate sensitive data from private Slack channels. Cybersecurity researchers responsibly disclosed a vulnerability to Slack that involves manipulating the …

Dell SupportAssist Vulnerability Exposes PCs to Privilege Escalation Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been identified in Dell’s SupportAssist for Home PCs, specifically affecting the installer executable version 4.0.3. This flaw, tracked as CVE-2024-38305, allows local low-privileged authenticated attackers …

Critical Vulnerability In OpenBMCs For Servers, Leads To Full Compromise

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

BMCs are specialized microcontrollers embedded in servers and other devices, responsible for monitoring and managing hardware health, including temperature, voltage, and system logs. Cybersecurity researchers at Tetrel Sec recently discovered …