Operation Uncle Scam – AI-Powered Phishing Attack Steals Microsoft Dynamics 365 Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers at Perception Point have uncovered a sophisticated phishing campaign, dubbed “Uncle Scam.” In this AI-powered campaign, threat actors impersonate U.S. government agencies to send fraudulent tender invitations to …

0-Click Outlook Vulnerability Triggered RCE When Email is Opened – Technical Analysis

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Morphisec researchers have recently uncovered a critical vulnerability in Microsoft Outlook, identified as CVE-2024-30103. It can execute malicious code as soon as an email is opened. We will explore the …

New Banshee MacOS Stealer Attacking Users to Steal Keychain Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

International authorities have successfully seized the servers associated with the notorious Dispossessor ransomware group. This operation marks a critical step in combating ransomware attacks that have plagued individuals, businesses, and …

Zabbix Server Vulnerability Lets Attacker Execute Arbitrary Code Via Ping Script

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security vulnerability, identified as CVE-2024-22116, has been patched in Zabbix, a popular monitoring solution. The vulnerability allowed an administrator with restricted permissions to execute arbitrary code via the …

Post-Exploitation Tactics Hackers Use After Compromising Ivanti, Fortigate VPN Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Akamai researchers have delved into the often-overlooked threat of VPN post-exploitation, highlighting techniques that threat actors can use to escalate their intrusion after compromising a VPN server. The study focuses …

Beware Of Malicious Typosquat Package That Steals Your Secret Keys

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers often target the Solana Python API ecosystem to exploit vulnerabilities in decentralized applications, access private keys, or manipulate transactions on the Solana blockchain. Recently the Solana Python API ecosystem …

AMD Sinkclose Vulnerability Lets Attackers Most Privileged Portions Of a Computer

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A Sinkclose vulnerability, which has been detected in AMD processors for decades, lets hackers obtain access to some of the most privileged areas of a computer. It allows malware to …

FBI Shuts Down Dispossessor Ransomware Operations, Domains Dismantled

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Law enforcement has been attacking cyber threat actors for quite some time now. The FBI has taken down several servers belonging to multiple threat actors to disrupt their malicious operations. …

CLFS Vulnerability Let Hackers Trigger BSOD Error On All Versions Of Windows 10 & 11

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A newly discovered vulnerability in the Common Log File System (CLFS.sys) driver of Windows has been identified, potentially affecting millions of devices running Windows 10, Windows 11, and various Windows …

Hackers Posing as Security Service Compromised 100 Govt Systems

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Hackers masquerading as the Security Service of Ukraine have compromised over 100 government systems. The Computer Emergency Response Team of Ukraine (CERT-UA) at the State Service of Special Communications and …