Microsoft Security Update : RCE, Privilege Escalation Flaws Patched

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The June 2024 Patch Tuesday update from Microsoft addressed almost 49 vulnerabilities in its products and 9 vulnerabilities in non-Microsoft products.  The update includes a critical vulnerability in Microsoft Message …

Black Basta Actors Exploited Windows Zero-day Privilege Escalation Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cardinal cybercrime group (aka Storm-1811, UNC4393), which operates the Black Basta ransomware, may have been exploiting a recently patched Windows privilege escalation vulnerability as a zero-day. CVE-2024-26169: The Vulnerability …

CISA Urges Administrators To Review Newly Released Six ICS Advisories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Cybersecurity and Infrastructure Security Agency (CISA) has issued a call to action for administrators and security professionals to review six newly released Industrial Control Systems (ICS) advisories. These advisories, …

VLC Media Player Vulnerabilities Allow Remote Code Execution

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

VideoLAN, the organization behind the popular VLC Media Player, has disclosed multiple critical vulnerabilities that could allow attackers to execute arbitrary code remotely. These vulnerabilities affect both the desktop and …

ComfyUI Users Targeted by Malicious Code Designed to Steal Login Credentials

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The research team has recently reported a concerning incident involving the popular Stable Diffusion user interface, ComfyUI. This event has sent shockwaves through the AI community, highlighting the potential dangers …

Critical Microsoft Outlook Zero-Click RCE Flaw Executes as Email is Opened

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical zero-click remote code execution (RCE) vulnerability has been discovered in Microsoft Outlook. This vulnerability, designated as CVE-2024-30103, enables attackers to run arbitrary code by sending a specially designed …