Microsoft Fended Off a Record 2.4 Tbps DDoS Attack Targeting Azure Customers

Blog WriterThe Hacker News - Original news source is thehackernews.com

Microsoft on Monday revealed that its Azure cloud platform mitigated a 2.4 Tbps distributed denial-of-service (DDoS) attack in the last week of August targeting an unnamed customer in Europe, surpassing …

Microsoft Warns of Iran-Linked Hackers Targeting US and Israeli Defense Firms

Blog WriterThe Hacker News - Original news source is thehackernews.com

An emerging threat actor likely supporting Iranian national interests has been behind a password spraying campaign targeting U.S., E.U., and Israeli defense technology companies, with additional activity observed against regional …

Ukraine Arrests Operator of DDoS Botnet with 100,000 Compromised Devices

Blog WriterThe Hacker News - Original news source is thehackernews.com

Ukrainian law enforcement authorities on Monday disclosed the arrest of a hacker responsible for the creation and management of a “powerful botnet” consisting of over 100,000 enslaved devices that was …

Verify End-Users at the Helpdesk to Prevent Social Engineering Cyber Attack

Blog WriterThe Hacker News - Original news source is thehackernews.com

Although organizations commonly go to great lengths to address security vulnerabilities that may exist within their IT infrastructure, an organization’s helpdesk might pose a bigger threat due to social engineering …

Researchers Warn of FontOnLake Rootkit Malware Targeting Linux Systems

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers have detailed a new campaign that likely targets entities in Southeast Asia with a previously unrecognized Linux malware that’s engineered to enable remote access to its operators, in …

Ransomware Group FIN12 Aggressively Going After Healthcare Targets

Blog WriterThe Hacker News - Original news source is thehackernews.com

An “aggressive” financially motivated threat actor has been identified as linked to a string of RYUK ransomware attacks since October 2018, while maintaining close partnerships with TrickBot-affiliated threat actors and …

New Patch Released for Actively Exploited 0-Day Apache Path Traversal to RCE Attacks

Blog WriterThe Hacker News - Original news source is thehackernews.com

The Apache Software Foundation on Thursday released additional security updates for its HTTP Server product to remediate what it says is an “incomplete fix” for an actively exploited path traversal and remote …

Code Execution Bug Affects Yamale Python Package — Used by Over 200 Projects

Blog WriterThe Hacker News - Original news source is thehackernews.com

A high-severity code injection vulnerability has been disclosed in 23andMe’s Yamale, a schema and validator for YAML, that could be trivially exploited by adversaries to execute arbitrary Python code. The …