Hackers Exploiting Remote Desktop Program Flaws to Install PlugX Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ASEC (AhnLab Security Emergency response Center) has recently reported that in order to deploy PlugX malware, threat actors are exploiting vulnerabilities in Chinese remote desktop programs like:- Sunlogin AweSun The …

Bitwarden Password Manager Flaw Let Attackers Steal User’s Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Flashpoint Vulnerability Research team observed that Bitwarden, a well-known password manager browser extension, treated embedded iframes on web pages in an unusual way.  Insecure behavior in Bitwarden’s credentials autofill …

LastPass Massive Hack Tied to Engineer Failure to Update Plex on Home Computer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

One of LastPass’s engineer neglected to update Plex on their personal computer, which led to the company’s significant breach. Plex claims that the vulnerability is almost three years old and …

Gmail Client-Side Encryption Is Now Publically Available For Everyone

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Google announced that CSE (client-side encryption) is now generally available for Gmail and Calendar users. This will let more companies become the sole arbiters of their own data and determine who …

Dish Network Hacked – Ransomware Attack Causes Multi-Day Outage

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

DISH Network Corporation learned on February 27, 2023, that the recent incident involved the extraction of certain data from the Corporation’s IT systems. The inquiry potentially shows that the data …

LastPass – Hackers Breached DevOps Engineer Laptop in the Second Attack

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Using information from the first incident, information from a third-party data breach and a flaw in a third-party media software package, the threat actor targeted LastPass to carry out a …