DNS Tunnel Keylogger – An Offensive Post-Exploitation Tool For Pentesters

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A new keylogging server and client tool have been released on GitHub for pentesters. The tool utilizes DNS tunneling to transmit keystrokes through firewalls, potentially evading detection covertly. The tool, …

Hackers Attack macOS Using Infostealer To Steal Sensitive Data

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Over the past year, macOS users, particularly those in the cryptocurrency sector, have been increasingly targeted by infostealers. These malicious programs aim to harvest credentials and data from crypto wallets. …

AT&T Data Breach: Millions of Customers Data Exposed in Dark Web Leak

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

AT&T has confirmed that personal data from approximately 73 million current and former customers has been leaked on the dark web. This confirmation comes after the telecommunications giant initially denied …

Hackers Attack Python Developers by Poising With Typosquat on PyPI

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

An automated risk detection system identified a typosquatting campaign targeting popular Python libraries on PyPI. In two waves with a 20-hour break, the attack deployed over 500 variations with typos …

Cyber Security News Weekly Round-Up (Vulnerabilities, Cyber Attacks, Threats & New Stories)

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

This weekly cybersecurity news recap keeps you informed about the latest threats, exposures, mitigation techniques, and emerging malicious tactics that could compromise systems.  Staying updated allows implementing preventive measures proactively …

Lessons Learned from the CISA – Ivanti Cyberattack – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

In today’s digital era, the frequency and sophistication of cyberattacks are on the rise, posing a serious threat to businesses and organizations worldwide. Among these incidents, the cyberattack on the …

GitLab Security Flaw Let Attackers Inject Malicious Scripts: Patch Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

GitLab has announced the release of updated versions for both its Community Edition (CE) and Enterprise Edition (EE), addressing critical vulnerabilities that could potentially allow attackers to inject malicious scripts …

Multiple Splunk Vulnerabilities Attackers Bypass SPL Safeguards : Patch Now

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Splunk Inc. has disclosed two significant vulnerabilities within its software suite, posing a considerable risk to organizations utilizing Splunk Enterprise and Splunk Cloud Platform. The vulnerabilities, identified as CVE-2024-29945 and …