Octopus Server Flaw Let Attackers Escalate Privilege

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Octopus Server, a popular automation tool for deployment, operations runbooks, and development tasks, has identified a critical security flaw. The vulnerability tracked as CVE-2024-2975 could allow attackers to escalate privileges …

xz-utils Backdoor Found in Kali Linux Installations – Check for Malware Infection

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A backdoor was recently discovered in the xz-utils package versions 5.6.0 to 5.6.1, shocking the Linux community. This poses a significant threat to the security of Linux distributions, including Kali …

OWASP Data Breach Due to Wiki Web Server Misconfiguration

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The Open Web Application Security Project (OWASP) Foundation disclosed a significant data breach. The breach, which was discovered in late February 2024, was caused by a misconfiguration of the foundation’s …

Vultur Android Malware mimic As McAfee Security App To Attacks Users

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Vultur, Android banking malware, has been observed incorporating new technical features, which allow the malware operator to remotely communicate with the victim’s mobile device. Additionally, Vultur has begun disguising more …

Linux Kernel Flaw Let Attackers Gain Full Root Access: PoC Published

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Security researchers have uncovered a critical vulnerability in the Linux kernel’s io_uring subsystem, which could allow attackers to gain full root access to affected systems. The flaw, tracked as CVE-2024-0582, was found …

Urgent Security Alert! Upstream Supply Chain Attack Lead to SSH Compromise

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security breach has been identified in the xz compression utility’s liblzma library, leading to a significant compromise of SSH server security across various Linux distributions. The xz format …