STAC6451 Hackers Attacking Microsoft SQL Servers to Compromise Organizations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly identified hacker group, designated as STAC6451, has been actively targeting Microsoft SQL (MSSQL) servers to compromise organizations, primarily in India. This group leverages exposed MSSQL servers to deploy …

New Cmoon Worm Attacking Users Via Compromised Websites

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have uncovered a new worm named CMoon targeting users through compromised websites. This sophisticated malware can steal confidential and payment data, download additional malware, and launch Distributed Denial-of-Service …

Researches Introduced MaskAnyone Toolkit To Minimize The Privacy Risks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Audio-visual data offers invaluable insights into human behavior and communication but raises significant privacy concerns, which proposes MaskAnyone, a toolkit for de-identifying individuals in audio-visual data while preserving data utility.  …

Cisco Software Manager Password Change Vulnerability Let Hackers Change password

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Cisco’s Smart Software Manager On-Prem (SSM On-Prem) has surfaced, allowing unauthenticated, remote attackers to change user passwords, including those of administrative users. This flaw, rooted in …

US to offer $10 million for Information on Iranian CyberAv3ngers Hackers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The United States has intensified its efforts to combat cyber threats by offering a substantial reward for information leading to identifying or locating individuals involved in malicious cyber activities against …

AMD Patches Multiple Memory Vulnerabilities That Leads Corrupt The Guest VM

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three potential vulnerabilities in Secure Encrypted Virtualization – Secure Nested Paging (SEV-SNP) could allow an attacker to read or corrupt the memory of a guest VM. To establish an isolated …

Microsoft Entra ID (Azure AD) Vulnerability Let Attackers Gain Global Admin Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered vulnerabilities in Microsoft’s Entra ID (formerly Azure Active Directory) dubbed “UnOAuthorized,” which could allow unauthorized actions beyond expected controls. The findings, centered on the OAuth 2.0 …