HelloKitty Ransomware Exploiting Apache ActiveMQ Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The recently disclosed Apache ActiveMQ remote code execution (RCE) flaw, CVE-2023-46604 is being exploited to spread ransomware binaries on target systems and demand a ransom from the victim organizations. Based on the …

Threat and Vulnerability Roundup for the week of October 29th to November 4th

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hey there, welcome to Cyber Writes’ weekly publication – the Threat and Vulnerability Roundup! Get ready to dive into the latest and greatest in cybersecurity, as we bring you the …

Microsoft Edge Vulnerability Let Attackers Execute Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Three new vulnerabilities have been discovered in Microsoft Edge (Chromium-based) associated with Remote Code execution and Spoofing. The CVEs of these vulnerabilities have been assigned as CVE-2023-36022, CVE-2023-36029, and CVE-2023-36034. …

Okta Hacked: 5000+ Employees Personal Information Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The US-based software firm Okta has disclosed a data breach caused by a third-party vendor, Rightway Healthcare, Inc., which exposed the personal information of around 5,000 workers. Okta uses Rightway as …

3,000+ Apache ActiveMQ Servers Vulnerable to RCE Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

More than 3,000 Apache ActiveMQ servers exposed to the internet are at risk due to a critical remote code execution (RCE) vulnerability identified as CVE-2023-46604. The most widely used open-source, multi-protocol, Java-based message …

Remote Desktop Manager Flaw Let Attacker Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recent reports indicate that the Remote Desktop Manager and Devolutions Server have been affected by improper access control and Remote code execution vulnerabilities. The CVEs of these vulnerabilities have been …