Critical SSRF Vulnerability in Microsoft Azure Let Hackers Compromise Health Bot Services

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Tenable Research has uncovered significant security vulnerabilities in Microsoft’s Azure Health Bot Service, a cloud platform designed to enable healthcare professionals to deploy AI-powered virtual health assistants. The Azure AI …

Critical SAP Vulnerabilities Allow Hackers to Bypass Authentication & Compromise Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SAP has released its August 2024 security patch update, addressing 17 new vulnerabilities, including two critical flaws that could allow attackers to bypass authentication and fully compromise affected systems. The …

New SSLoad Loader Malware Attacking Users to Infiltrate Login Details

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

SSLoad is a complex malware loader that mainly intrudes into desired systems via phishing emails. Once inside, it performs reconnaissance, and then transfers the collected intelligence to its handlers. SSLoad …

CryptoCore, Sophisticated Cryptocurrency Scam Attacking Users To Drain Wallets

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Cryptocurrency scams have changed along with digital currencies and they now employ technological advancements like AI and deepfakes in their sophisticated frauds. The CryptoCore group is an example of these …

Beware of New Phishing Campaign that Impersonates Google Safety Centre

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A sophisticated phishing campaign has emerged, impersonating the Google Safety Centre to deceive users. This campaign is tricking unsuspecting individuals into downloading a malicious file, posing as the widely used …

Ivanti Virtual Traffic Manager Flaw Let Hackers Create Rogue Admin Accounts

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Ivanti Virtual Traffic Manager has been discovered with a critical vulnerability which was associated with authentication bypass. This vulnerability has been assigned with CVE-2024-7593 and the severity was given as …

Critical 0-Click RCE in Windows TCP/IP Stack Impacts All Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released an urgent security update to address a critical remote code execution vulnerability in the Windows TCP/IP stack. The flaw tracked as CVE-2024-38063, affects all supported Windows and …

Zoom Critical Vulnerabilities Let Attackers Escalate Privileges

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Zoom Video Communications has disclosed several critical vulnerabilities affecting its Workplace Apps, SDKs, and Rooms Clients. These vulnerabilities, identified in multiple security bulletins, potentially allow attackers to escalate privileges on …

Microsoft Patches 6 Zero-Days That Threat Actors Actively Exploiting

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has released its August 2024 Patch Tuesday update to address 90 security vulnerabilities. The update includes fixes for six zero-day flaws actively exploited across various products and services, such …