Zabbix Server Vulnerability Lets Attacker Execute Arbitrary Code Via Ping Script

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability, identified as CVE-2024-22116, has been patched in Zabbix, a popular monitoring solution. The vulnerability allowed an administrator with restricted permissions to execute arbitrary code via the …

Post-Exploitation Tactics Hackers Use After Compromising Ivanti, Fortigate VPN Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Akamai researchers have delved into the often-overlooked threat of VPN post-exploitation, highlighting techniques that threat actors can use to escalate their intrusion after compromising a VPN server. The study focuses …

Beware Of Malicious Typosquat Package That Steals Your Secret Keys

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often target the Solana Python API ecosystem to exploit vulnerabilities in decentralized applications, access private keys, or manipulate transactions on the Solana blockchain. Recently the Solana Python API ecosystem …

AMD Sinkclose Vulnerability Lets Attackers Most Privileged Portions Of a Computer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Sinkclose vulnerability, which has been detected in AMD processors for decades, lets hackers obtain access to some of the most privileged areas of a computer. It allows malware to …

FBI Shuts Down Dispossessor Ransomware Operations, Domains Dismantled

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement has been attacking cyber threat actors for quite some time now. The FBI has taken down several servers belonging to multiple threat actors to disrupt their malicious operations. …

CLFS Vulnerability Let Hackers Trigger BSOD Error On All Versions Of Windows 10 & 11

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered vulnerability in the Common Log File System (CLFS.sys) driver of Windows has been identified, potentially affecting millions of devices running Windows 10, Windows 11, and various Windows …

Hackers Posing as Security Service Compromised 100 Govt Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers masquerading as the Security Service of Ukraine have compromised over 100 government systems. The Computer Emergency Response Team of Ukraine (CERT-UA) at the State Service of Special Communications and …

ONNX Bot Tool Hijacks Microsoft 365 accounts & Even Bypass 2FA

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers have uncovered a sophisticated phishing marketplace, the ONNX Store, which provides cybercriminals with advanced tools to hijack Microsoft 365 accounts. Alarmingly, these tools include methods for bypassing two-factor authentication …

Sonos Smart Speaker Vulnerability Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the beginning of August 2024, Sonos released a security advisory in which they fixed two security vulnerabilities that were associated with Remote Code Execution. These vulnerabilities have been assigned …