Iranian Hackers Targeting VMware Horizon Log4j Flaws to Deploy Ransomware

Blog WriterThe Hacker News - Original news source is thehackernews.com

A “potentially destructive actor” aligned with the government of Iran is actively exploiting the well-known Log4j vulnerability to infect unpatched VMware Horizon servers with ransomware. Cybersecurity firm SentinelOne dubbed the group “TunnelVision” …

U.S. Says Russian Hackers Stealing Sensitive Data from Defense Contractors

Blog WriterThe Hacker News - Original news source is thehackernews.com

State-sponsored actors backed by the Russian government regularly targeted the networks of several U.S. cleared defense contractors (CDCs) to acquire proprietary documents and other confidential information pertaining to the country’s …

VMware Issues Security Patches for High-Severity Flaws Affecting Multiple Products

Blog WriterThe Hacker News - Original news source is thehackernews.com

VMware on Tuesday patched several high-severity vulnerabilities impacting ESXi, Workstation, Fusion, Cloud Foundation, and NSX Data Center for vSphere that could be exploited to execute arbitrary code and cause a denial-of-service (DoS) condition. …

Trickbot Malware Targeted Customers of 60 High-Profile Companies Since 2020

Blog WriterThe Hacker News - Original news source is thehackernews.com

The notorious TrickBot malware is targeting customers of 60 financial and technology companies, including cryptocurrency firms, primarily located in the U.S., even as its operators have updated the botnet with …

[Webinar] When More Is Not Better: Solving Alert Overload

Blog WriterThe Hacker News - Original news source is thehackernews.com

The increasing volume and sophistication of cyberattacks have naturally led many companies to invest in additional cybersecurity technologies. We know that expanded threat detection capabilities are necessary for protection, but …

EU Data Protection Watchdog Calls for Ban on Pegasus-like Commercial Spyware

Blog WriterThe Hacker News - Original news source is thehackernews.com

The European Union’s data protection authority on Tuesday called for a ban on the development and the use of Pegasus-like commercial spyware in the region, calling out the technology’s “unprecedented …

Researchers Link ShadowPad Malware Attacks to Chinese Ministry and PLA

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers have detailed the inner workings of ShadowPad, a sophisticated and modular backdoor that has been adopted by a growing number of Chinese threat groups in recent years, while …

High-Severity RCE Security Bug Reported in Apache Cassandra Database Software

Blog WriterThe Hacker News - Original news source is thehackernews.com

Researchers have revealed details of a now-patched high-severity security vulnerability in Apache Cassandra that, if left unaddressed, could be abused to gain remote code execution on affected installations. “This Apache …