New Phishing Campaign Attacking AWS Accounts To Steal Logins

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A phishing email containing only a PNG image was sent from a compromised AWS account using the spoofed sender address [email protected]. Clicking the image redirected victims to a malicious Squarespace …

Fortinet Patches Multiple Vulnerabilities Impacting FortiOS & Other Products

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortinet, a leader in cybersecurity solutions, has released patches addressing several vulnerabilities affecting its FortiOS, FortiProxy, FortiPAM, FortiSwitchManager, FortiManager, and FortiAnalyzer products. If exploited, these vulnerabilities could potentially allow unauthorized …

ArtiPACKED: Hacking GitHub Repositories Through a Race Condition Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers discovered a vulnerability in GitHub’s Actions feature. GitHub Actions artifacts are generated as part of organizations’ CI/CD workflows, and a combination of misconfigurations and security flaws can lead …

Adobe Patches 72 Security Vulnerabilities Across Multiple Products

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Adobe has released patches for 72 security vulnerabilities across its popular software products. This effort, spearheaded by Adobe’s Product Security Incident Response Team (PSIRT), underscores its commitment to safeguarding its …

Critical SSRF Vulnerability in Microsoft Azure Let Hackers Compromise Health Bot Services

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Tenable Research has uncovered significant security vulnerabilities in Microsoft’s Azure Health Bot Service, a cloud platform designed to enable healthcare professionals to deploy AI-powered virtual health assistants. The Azure AI …

Critical SAP Vulnerabilities Allow Hackers to Bypass Authentication & Compromise Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SAP has released its August 2024 security patch update, addressing 17 new vulnerabilities, including two critical flaws that could allow attackers to bypass authentication and fully compromise affected systems. The …

New SSLoad Loader Malware Attacking Users to Infiltrate Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SSLoad is a complex malware loader that mainly intrudes into desired systems via phishing emails. Once inside, it performs reconnaissance, and then transfers the collected intelligence to its handlers. SSLoad …

CryptoCore, Sophisticated Cryptocurrency Scam Attacking Users To Drain Wallets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cryptocurrency scams have changed along with digital currencies and they now employ technological advancements like AI and deepfakes in their sophisticated frauds. The CryptoCore group is an example of these …

Beware of New Phishing Campaign that Impersonates Google Safety Centre

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign has emerged, impersonating the Google Safety Centre to deceive users. This campaign is tricking unsuspecting individuals into downloading a malicious file, posing as the widely used …

Ivanti Virtual Traffic Manager Flaw Let Hackers Create Rogue Admin Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ivanti Virtual Traffic Manager has been discovered with a critical vulnerability which was associated with authentication bypass. This vulnerability has been assigned with CVE-2024-7593 and the severity was given as …