Cyber News

Millions of Linux Systems Worldwide Exposed by Critical Vulnerabilities Leaking Password Hashes

A pair of high-severity vulnerabilities discovered by Qualys threaten the security of millions of Linux systems worldwide, exposing hashed credentials…

11 months ago

Study Reveals Key Strengths And Weak Spots In Cloud LLM Guardrails

Cloud-based large language models have become an indispensable tool across industries, bringing with them new challenges in maintaining safe and…

11 months ago

Cyber Criminals Actively Exploiting Cloudflare Tunnels for Sophisticated Attacks

Security analysts are sounding the alarm as cybercriminals increasingly weaponize Cloudflare tunnels, leveraging the popular cloudflared tool to orchestrate stealthy, persistent attacks…

11 months ago

APT Hackers Using TOUGHPROGRESS Malware to Exploits Google Calendar for C2 – Google Warns

In a new wave of sophisticated cyberattacks, Google’s Threat Intelligence Group (GTIG) has raised the alarm over a campaign orchestrated…

11 months ago

Critical Roundcube Vulnerability Allow Attackers Execute Arbitrary Code Remotely

The developers of Roundcube Webmail, one of the world’s most popular open-source webmail platforms, have released urgent security updates in versions…

11 months ago

Hackers Actively Exploiting Critical vBulletin Vulnerability in the Wild

A newly disclosed and actively exploited unauthenticated Remote Code Execution (RCE) vulnerability in vBulletin forum software threatens thousands of online…

11 months ago

Hackers Distribute Fake CAPTCHA Campaigns that Trick User to  Install Rust- Based InfoStealer

Cybersecurity researchers at Elastic Security Labs have uncovered a sophisticated campaign leveraging fake CAPTCHA verification pages to disseminate a sophisticated, Rust-based infostealer…

11 months ago

North Korean IT Workers Bypass EDR By Abusing Legitimate Software & Network Behaviors

In mid-2024, investigators uncovered a sophisticated operation where North Korean IT workers, using false identities to get hired by Western…

11 months ago

50,000+ Azure AD Users Access Token Leaked From Unauthenticated API Endpoint

CloudSEK’s BeVigil platform recently uncovered a critical security lapse that exposed sensitive data of more than 50,000 Azure Active Directory…

11 months ago

Weaponized AI Tool Installers Infect Windows Devices with Ransomware

A new wave of cyberattacks, where malicious actors exploit AI’s popularity by distributing weaponized installers that deliver ransomware and destructive…

11 months ago