BianLian Hackers Exploiting TeamCity Servers to Deploy Powershell Backdoor

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The notorious hacking group BianLian, known for its sophisticated cyber attacks, has shifted its focus to extortion-only operations following the release of a decryptor by Avast in January 2023. GuidePoint’s …

Vulnerabilities in Popular Fonts Allow XXE & Arbitrary Command Attacks

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

The popular fonts used in web development and design can be exploited to launch XML External Entity (XXE) attacks and execute arbitrary commands. These vulnerabilities, identified as CVE-2023-45139, CVE-2024-25081, and …

Magnet Goblin Hackers Exploiting 1-day Vulnerabilities To Attack Linux Servers

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Threat actors often target Linux servers due to their widespread use in critical infrastructure, web hosting, and cloud environments.  The open-source nature of the Linux operating system allows threat actors …

NSA Releases Top 10 Cloud Security Mitigation Strategies – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

NSA and CISA jointly released “Top 10 Cloud Security Mitigation Strategies” to advise cloud users on critical security practices for migrating data.  The National Security Agency outlines ten essential strategies …

Cyber Security News Weekly Round-Up : Vulnerabilities, Cyber Attacks, Threats & New Cyber Stories

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Stay updated with the most recent advancements in the cybersecurity industry with our weekly recap of cybersecurity news. Get comprehensive insights into the latest technical details and cutting-edge technologies being …

150K+ Fortinet Devices Vulnerable to Critical Code Execution Flaw

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

A critical security flaw identified as CVE-2024-21762 has been discovered in Fortinet’s FortiOS and FortiProxy secure web gateway systems, potentially impacting around 150,000 devices worldwide. The vulnerability allows for unauthenticated …

Russian Spies Hacked Microsoft Email Systems & Stolen Source Codes

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Microsoft has disclosed that Russian government hackers, identified as the group Midnight Blizzard, have successfully infiltrated its corporate email systems and stolen source codes. The tech giant recently discovered unauthorized …

10 Best Network Security Solutions for Chief Security Officer to Consider – 2024

Blog WriterCybersecurity News - Original News Source is cybersecuritynews.com

Any place that stores sensitive information is a prime target for hackers worldwide, and government institutes hold the most critical amount of data about a country and its citizens. Making …