Fortinet Critical Flaw: Let a Remote Attacker Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A ‘critical’ severity flaw has been detected inFortiOS and FortiProxy, identified as CVE-2023-33308 (CVSS rating 9.8). A remote attacker can use the vulnerability on susceptible devices to execute Fortinet arbitrary code. “A stack-based …

DangerousPassword Attacks Targeting Windows, macOS, and Linux Software Developers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Python-based malware targets Windows, linux, and macOS and is presumed to be used by dangerous password attack groups, also known as Crypto mimics. This group has been active since June …

ICS/OTICS Patch Tuesday: Siemens and Schneider Electric Releases Patch for 50 vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Siemens and Schneider Electric published nine new security warnings that together addressed 50 vulnerabilities impacting its industrial devices. Recently, Schneider Electric and Siemens Energy indicated that they were the targets of …

New Stealthy Universal Rootkit Let Attacker Load second-stage Payload Directly

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A self-signed China-originated Rootkit acts as a universal downloader targeting gaming sectors to exfiltrate sensitive information. The threat actors abuse Microsoft signing portals to sign their drivers in order to …

Zoom Security Flaws let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Zoom has released security patches for 6 high and 1 low severity vulnerabilities, allowing threat actors to escalate privileges and disclose sensitive information. The CVSS Score of these vulnerabilities ranges …

6 Actively Exploited Zero-Days and 132 Flaws Patched – Microsoft Security Update

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A total of 132 new security flaws in Microsoft’s products were patched, including six zero-day issues that the company claimed were being actively used in the wild. Nine of the 130 …

Multiple Critical Adobe Security Flaws Let Attacker to Execute Arbitrary Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Adobe addressed critical security issues in ColdFusion and InDesign. Users should install security updates immediately to ensure system safety. Stay informed and prioritize security maintenance to address potential threats. Attackers …