Hackers’ Toolkit Exposed, Wide Range of Tools from Initial Access to Full Control

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have discovered an extensive hacker toolkit, revealing a comprehensive set of tools designed for various stages of cyberattacks. The toolkit, found in an open directory, showcases the sophisticated …

Researchers Hacked Industrial Remote Access Gateway Tool to Gain Root Access

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered severe vulnerabilities in the Ewon Cosy+, a widely used industrial remote access gateway tool, allowing them to gain root access and compromise the device’s security. The …

Critical Vulnerabilities in AWS Lets Attackers Gain Full-Service Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Researchers from Aqua identified critical vulnerabilities in six Amazon Web Services (AWS): CloudFormation, Glue, EMR, SageMaker, ServiceCatalog, and CodeStar. These vulnerabilities varied in severity, potentially allowing remote code execution, full-service …

Vulnerabilities in Qualcomm’s Adreno GPU Chipsets Affect Billions of Android Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google researchers have identified critical security vulnerabilities within Qualcomm’s Adreno GPU, potentially affecting billions of Android devices globally. If exploited, these vulnerabilities could lead to unauthorized access and control over …

IBM Aspera Shares Vulnerability Let Attackers Login as Any User

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

IBM has disclosed a vulnerability in its Aspera Shares software, CVE-2023-38018. This flaw in user session handling could potentially allow attackers to impersonate any user within the system, posing a …

Critical OpenSSH Vulnerability in FreeBSD Let’s Attackers Gain Root Access Remotely

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability has been discovered in OpenSSH implementations on FreeBSD systems, potentially allowing attackers to execute remote code without authentication. The vulnerability, identified as CVE-2024-7589, affects all supported …

Best Active Directory Monitoring Tools – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Monitoring an Active Directory (AD) involves tracking and analyzing business AD events and activity. Windows-based systems store and manage network resources, user accounts, groups, and security rules in Active Directory. …

Critical OpenVPN Vulnerabilities Expose Millions of Devices to RCE Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft researchers have recently uncovered multiple medium-severity vulnerabilities in OpenVPN, a widely used open-source VPN software. OpenVPN is used by thousands of companies across various industries, including information technology, financial …

Microsoft Office Spoofing Vulnerability Let Attackers Steal Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed a significant security vulnerability in its Office suite, identified as CVE-2024-38200, which could potentially allow attackers to access sensitive information. This spoofing vulnerability affects multiple versions of …

Open Source Firewall pfsense Vulnerable to Remote Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A popular open-source firewall software pfSense vulnerability has been identified, allowing for remote code execution (RCE) attacks. The vulnerability, tracked as CVE-2022-31814, highlights potential risks in pfSense installations, particularly those …