PoC Exploit Published For SharePoint XML eXternal Entity (XXE) Injection Vulnerability

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new XXE (XML eXternal Entity) Injection has been discovered to affect SharePoint on both on-prem and cloud instances. This vulnerability has been assigned to CVE-2024-30043, and the severity has …

Frontier Communications Ransomware Attack: 750,000 Users’ Data Exposed

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Frontier Communications Parent, Inc. (the “Company”) detected unauthorized access to portions of its information technology environment. The breach, attributed to a likely cybercrime group, exposed the personal data of approximately …

Bitdefender GravityZone Flaw Let Hackers Launch SSRF Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Bitdefender has recently fixed a critical Server-Side Request Forgery (SSRF) vulnerability in its GravityZone Console On-Premise, known as CVE-2024-4177. This flaw, discovered in the host whitelist parser, could have allowed …

Microsoft Made Changes to Recall Feature Following Controversial Security Concerns

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has announced significant updates to its new Recall feature for Copilot+ PCs, following a wave of security and privacy concerns raised by experts and users. The Recall feature, set …

Beware of Fake Google Chrome Update Pop-Ups that Installs Malware

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In the ever-changing cybersecurity landscape, a persistent threat appears in the form of a fake Chrome update.  Usually, these efforts involve injecting harmful code into a website, which prompts individuals …

Hackers Attack ThinkPHP By Injecting Payload From Remote Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors are constantly evolving their TTPs and developing new malicious tools to execute their activities. Recently, Akamai researchers have noted a concerning trend of attackers exploiting known vulnerabilities, such …