Hackers Actively Deploying Zyxel Firewall Flaw To Deploy Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity experts have uncovered a wave of attacks exploiting vulnerabilities in Zyxel firewall to deploy the Helldown ransomware. This new ransomware operation, first observed in August 2024, has quickly gained …

UK Healthcare Provider Suffered Cyberattack, Services Affected

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A major cyberattack has disrupted operations at Wirral University Teaching Hospital (WUTH), part of the NHS Foundation Trust, leading to postponed appointments and procedures. The incident, which began earlier this …

Active Directory Certificate Services Vulnerability Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical vulnerability in Microsoft’s Active Directory Certificate Services (AD CS) that could allow attackers to escalate privileges and potentially gain domain admin access. This new exploit, dubbed ESC15 or …

Why Cybersecurity Leaders Trust the MITRE ATT&CK Evaluations

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In today’s rapidly evolving threat landscape, security leaders must make informed decisions to protect their organizations effectively. The “MITRE Engenuity ATT&CK Evaluations: Enterprise” serve as an essential resource for cybersecurity …

XT Exchange Hacked, $1.7 Million Stolen in Cryptocurrency, Withdrawal Halted

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A major cryptocurrency exchange, XT.com, suspended all withdrawals on November 28, 2024, following a suspected hack that resulted in the theft of approximately $1.7 million worth of digital assets. The …

North Korean Hackers Attacking Developers With A Weaponized JavaScript Projects

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean threat actors target software developers with weaponized Javascript projects that include BeaverTail malware deployed via NPM packages. It is intended to steal information and load additional stages of …

New Skimmer Malware Steals Credit Card Data From Checkout Pages

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new skimmer malware is targeting Magento-powered eCommerce websites, stealing sensitive credit card information from checkout pages.  This malware dynamically creates a false credit card form or directly extracts payment …

What is End-to-End Encryption (E2EE)?

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

With the rise of cyber threats, surveillance, and unauthorized access, protecting sensitive information has become a critical challenge for individuals, businesses, and governments alike. One technology at the forefront of …

HPE Insight Remote Support Vulnerabilities Let Attackers Execute Remote Code

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hewlett Packard Enterprise (HPE) has disclosed multiple high-severity vulnerabilities in its Insight Remote Support (IRS) software, potentially allowing attackers to execute remote code, perform directory traversal, and access sensitive information. …

Zabbix SQL Injection Vulnerability Let Attackers Gain Complete Control Of Instances

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw has been discovered in Zabbix, the popular open-source monitoring solution, potentially allowing attackers to gain full control over affected instances. The vulnerability, identified as CVE-2024-42327, affects …