Top 10 Security Service Edge (SSE) Solutions for Network Security – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security Service Edge (SSE) is an idea in cybersecurity that shows how network security has changed over time. It combines different security services into a single, cloud-based tool that gives …

ANY.RUN Sandbox Now Analyzes Complex Linux Malware For SOC & DFIR Teams

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The ANY.RUN sandbox has recently undergone an update to include support for Linux, strengthening its capacity to offer a safe and isolated atmosphere for examining malware and conducting threat analysis. …

Spyware Vendors Behind 50% of 0-day Exploits: Google Said

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Spyware is a crucial tool for the surveillance and data collection of high-risk individuals. The functionalities of spyware have undergone significant advancements and have become more sophisticated than ever before. …

Chinese Hackers Exploited Fortinet zero-day Flaw to hack Dutch defense networks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Chinese state-sponsored hackers exploited a zero-day vulnerability (CVE-2022-42475) in Fortinet’s virtual private network to gain unauthorized access to the Dutch defense networks. The hackers then deployed COATHANGER malware, a sophisticated …

Linux Shim Bootloader Flaw Expose Most Linux Distros to Code Execution Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Shim is a small application used by open-source projects and other third parties for verifying and running the bootloader (typically GRUB2). The application was developed specifically to circumvent legal issues …

Two New FortiSIEM Max-severity Flaw Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

FortiSIEM has been discovered with multiple OS command injection vulnerabilities, which could allow an unauthenticated remote threat actor to execute unauthorized commands on FortiSIEM via crafted API requests. The CVEs …

Google’s Open-source Tool Bazel Flaw Let Attackers Insert Malicious Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Bazel, an open-source software used for automation of building and testing, has been discovered with a critical supply chain vulnerability that could allow a threat actor to inject malicious code …