Epson Devices Vulnerability Let Attackers Create Rogue Admin Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly disclosed security vulnerability, CVE-2024-47295, has been found in several Epson devices, including printers, scanners, and network interface products. The flaw allows attackers to exploit a critical configuration oversight …

Hackers Abusing Google Ads To Deliver Fakebat Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybersecurity researchers have uncovered a resurgence of the Fakebat malware loader being distributed through malicious Google Ads. After a months-long break, Fakebat has resurfaced, focusing on users who are looking …

Palo Alto Networks Warns Of Critical PAN-OS Remote Code Execution Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Palo Alto Networks has issued an urgent warning about a potential critical remote code execution (RCE) vulnerability affecting the management interface of their PAN-OS next-generation firewalls. The cybersecurity company has …

Microsoft Bookings Flaw Let Hackers Create Impersonate User Acccounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw in Microsoft Bookings has been uncovered. This flaw, inherent in the default configuration of Microsoft Bookings, potentially allows attackers to create unauthorized Entra (formerly Azure AD) …

Hackers Exploiting Veeam RCE Flaw to Deploy New Frag Ransomware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are actively exploiting a critical vulnerability in Veeam Backup & Replication software to deploy a new ransomware strain called “Frag.” The vulnerability, tracked as CVE-2024-40711, allows unauthenticated remote …

Hackers Attacking macOS Users with New Multi-Stage Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

North Korean threat actors, likely associated with BlueNoroff, have launched multi-stage malware attacks targeting cryptocurrency businesses, expanding their toolkit to include RustDoor/ThiefBucket and RustBucket campaigns.  Hidden Risk, a DPRK-linked threat …

Beware of Fake Copyright Claims that Deliver Rhadamanthys Stealer Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cybercriminals have launched a large-scale phishing attack using a new variant of Rhadamanthys Stealer, dubbed CopyRh(ight)adamantys, which targets individuals and organizations worldwide, falsely accusing them of copyright infringement.  Attackers impersonate …

North Korean Hackers Abuse Cloud-Based Services to Deploy Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

ESET’s recent report details the activities of various advanced persistent threat (APT) groups from April to September 2024, highlighting key trends and developments observed during this period, including the use …

Beware of Fake Copyright Claims That Deliver Rhadamanthys Stealer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Stealer malware is a type of malicious software designed to infiltrate computers and extract sensitive information. Once installed, it communicates with a command-and-control server operated by threat actors and enables …