9 Million Times Downloaded JsonWebToken Flaw Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

During the course of investigating the popular open-source project JsonWebToken, Unit 42 researchers discovered a new vulnerability. The cybersecurity analysts tracked the flaw as CVE-2022-23529 and this flaw has been …

Kinsing Malware Uses Unique Techniques to Breach Kubernetes Clusters

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

By exploiting vulnerabilities in container images and misconfigured PostgreSQL containers, Kinsing malware is now actively infiltrating Kubernetes clusters. Threat actors are not unusual in using these tactics, but it appears …

Beware of Modified Zoom App that Delivers Banking Malware IcedID Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A malicious IcedID malware campaign was identified recently by Cyble researchers through which threat actors are actively spreading malware using modified versions of the Zoom application that have been trojanized. …

Hackers Use CAPTCHA Bypass Techniques to Create Five GitHub Accounts Every Minute

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers from Unit 42 analyze Automated Libra, the group of cloud threat actors responsible for PurpleUrchin, the freejacking campaign. It is been observed that Automated Libra has been refining its …

NYC Education Department Has Banned ChatGPT on School & Networks Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Several New York schools have banned ChatGPT, an AI chatbot that generates conversational responses. On its online systems and internet networks, the New York City Department of Education has banned …

Zoho Urged Customers to Patch Critical SQL Injection Vulnerability Immediately

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Customers have been asked by Zoho to patch a critical security flaw impacting several ManageEngine products. “This security advisory is to let you know that critical security vulnerability was detected,” according …