Massive DDoS Attack: Record-breaking 419 TB of Malicious Traffic Within 24 Hours

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Akamai Technologies effectively countered one of the most extensive and advanced distributed denial-of-service (DDoS) attacks it has faced to date. The attack, targeting a major financial services company in Israel, …

0.0.0.0 Day – 18 Yr Old Vulnerability Let Attackers Bypass All Browser Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers at Oligo Security have discovered an 18-year-old critical vulnerability, dubbed “0.0.0.0 Day,” that affects all major web browsers, including Chromium, Firefox, and Safari. This vulnerability allows malicious websites to …

Cisco Small Business IP Phones Vulnerabilities: Attackers Can Execute Arbitrary Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has disclosed multiple critical vulnerabilities affecting its Small Business SPA300 and SPA500 Series IP Phones, potentially allowing attackers to execute arbitrary commands with root privileges or cause denial of …

Vulnerabilities in Jenkins Let Hackers Execute Arbitrary Code Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A pair of security vulnerabilities have been discovered in Jenkins, a popular open-source automation server, that could allow attackers to read arbitrary files from the Jenkins controller file system and …

GhostWrite Vulnerability Let Hackers Read & Write Any Part of The Computer’s Memory

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A group of cybersecurity researchers at CISPA Helmholtz Center for Information Security recently identified three major security vulnerabilities in five commercial RISC-V CPUs, including GhostWrite, which allows an attacker to …

Windows Zero-day Flaw Let Hackers Downgrade Fully Updated Systems to Old Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Every software and operating system vendor has been implementing security measures to protect their products. This is because threat actors require a lot of time to find a zero-day but …

Hackers Leveraging OneDrive & Google Drive To Hide Malicious Traffic

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Attackers, including nation-state actors, increasingly leverage legitimate cloud services for espionage operations, exploiting their low-profile and cost-effective nature.  The services, such as Microsoft OneDrive and Google Drive, evade detection by …

1Password Vulnerability Let Attackers Exfiltrate Vault Items

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability, designated as CVE-2024-42219, has been identified in 1Password 8 for Mac. This flaw allows malicious actors to exfiltrate vault items by bypassing the app’s platform security protections. …