Python based WIREFIRE web shell Attacking Ivanti Connect Secure (ICS) VPN appliances

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Recently, QuoIntelligence’s research team unearthed a previously undetected variant of the notorious WIREFIRE web shell, a Python-based implant targeting compromised Ivanti Connect Secure (ICS) VPN appliances.  This discovery unveils a …

Researchers Exploited Tesla Modem, Sony & Alpine Players in Pwn2Own Automotive

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Pwn2Own 2024 Automotive is a unique event aimed at identifying and fixing flaws in connected automotive technologies. Tokyo, Japan, hosts the Pwn2Own 2024 Automotive from January 24–26, 2024. Tesla is …

Mass Exploitation of Ivanti VPN Exposes Corporate Networks to Hack Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

It was previously reported that Ivanti Connect Secure was vulnerable to an authentication bypass (CVE-2023-46805) and a command injection vulnerability (CVE-2024-21887) actively exploited by threat actors in the wild. Moreover, …

Exploit Released for Critical GoAnywhere MFT Auth Bypass : Patch Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Fortra-owned GoAnywhere MFT (Managed File Transfer) has been discovered with a new vulnerability that could allow an unauthorized threat actor to create an admin user via the administration panel. This …

Transfer Learning in Computer Vision: Adapting Pre-trained Models for New Tasks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

To simplify and speed up data-backed software solutions, specially trained machine models are used. However, it is challenging and time-consuming to train these models from the very beginning. That’s why …

Re-vamped Zloader Attacking Windows Users With New RSA Encryption

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Zloader, also known as Terdot, DELoader, or Silent Night, is a modular trojan that reappeared after nearly two years of absence but with significant enhancements to the loader module. Zloader has …

Atlassian Confluence Servers Attacked From 600+ IP Addresses

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Atlassian disclosed a critical vulnerability last week related to Remote Code Execution (CVE-2023-22527). This particular vulnerability was reported to be affecting Confluence Data Center and Server versions released earlier than …