SmokeLoader Malware Attacking Windows Users Exploiting XLS And DOC Vulnerabilities

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious SmokeLoader malware has been identified targeting firms in Taiwan, including those in manufacturing, healthcare, information technology, and other industries.  SmokeLoader is renowned for its adaptability and sophisticated evasion …

Cisco Confirms Active Exploitation Of Cisco XSS VPN Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cisco has confirmed that a decade-old cross-site scripting (XSS) vulnerability in its Adaptive Security Appliance (ASA) Software is currently being actively exploited in the wild. The vulnerability, identified as CVE-2014-2120, …

Hackers Allegedly Claims Breach of EazyDiner Reservation Platform

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A prominent restaurant reservation platform, EazyDiner has reportedly fallen victim to a significant data breach. Hackers claim to have accessed and leaked sensitive customer information, potentially compromising the privacy and …

Salesforce Applications Vulnerability Let Attackers Takeover The Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A recent penetration test conducted on Salesforce Communities revealed critical vulnerabilities that could allow attackers to take over user accounts. The security assessment, performed on multiple Salesforce instances, uncovered several …

Apple Employee Suing Company For Monitoring Employee Personal Devices

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A current Apple employee has filed a lawsuit against the Apple, accusing the company of invasive surveillance practices that extend into workers’ personal lives. The lawsuit, filed in California state …

TP-Link Archer Zero-Day Vulnerability Let Attackers Inject Malicious Commands

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-day vulnerability has been discovered in TP-Link Archer, Deco, and Tapo series routers, potentially allowing attackers to inject malicious commands and fully compromise affected devices. This vulnerability, present …

Lifetime Jail For Hydra Dark Web Market Developer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Moscow Regional Court has sentenced Stanislav Moiseyev, the founder of the notorious Hydra darknet marketplace, to life imprisonment. The verdict, delivered on December 2, 2024, marks a significant milestone …

AWS Launched New Security Incident Response Service to Boost Enterprise Security

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Amazon Web Services (AWS) unveiled a new service, AWS Security Incident Response, designed to help organizations manage security events efficiently. As cyber threats become increasingly complex, this service offers a …

Hackers Can Exploit Windows Driver Use-After-Free Vulnerability (CVE-2024-38193) to Gain Systems Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical use-after-free vulnerability called CVE-2024-38193 is found in the Windows driver afd.sys. It affects the Registered I/O (RIO) extension for Windows sockets and lets attachers take over the whole …