New XM Cyber Research: 80% of Exposures from Misconfigurations, Less Than 1% from CVEs

17/05/2024 0 Comments 0 tags

A new report from XM Cyber has found – among other insights – a dramatic gap between where most organizations focus their security efforts, and where the most serious threats actually reside. The new

Kinsing Hacker Group Exploits More Flaws to Expand Botnet for Cryptojacking

17/05/2024 0 Comments 0 tags

The cryptojacking group known as Kinsing has demonstrated its ability to continuously evolve and adapt, proving to be a persistent threat by swiftly integrating newly disclosed vulnerabilities to exploit arsenal and expand

CISA Warns of Actively Exploited D-Link Router Vulnerabilities – Patch Now

17/05/2024 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added two security flaws impacting D-Link routers to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The list

Kimsuky APT Deploying Linux Backdoor Gomir in South Korean Cyber Attacks

17/05/2024 0 Comments 0 tags

The Kimsuky (aka Springtail) advanced persistent threat (APT) group, which is linked to North Korea’s Reconnaissance General Bureau (RGB), has been observed deploying a Linux version of its GoBear backdoor as part

North Korean Hackers Exploit Facebook Messenger in Targeted Malware Campaign

17/05/2024 0 Comments 0 tags

The North Korea-linked Kimsuky hacking group has been attributed to a new social engineering attack that employs fictitious Facebook accounts to targets via Messenger and ultimately delivers malware. “The threat actor created

New Wi-Fi Vulnerability Enables Network Eavesdropping via Downgrade Attacks

17/05/2024 0 Comments 0 tags

Researchers have discovered a new security vulnerability stemming from a design flaw in the IEEE 802.11 Wi-Fi standard that tricks victims into connecting to a less secure wireless network and

Researchers Uncover 11 Security Flaws in GE HealthCare Ultrasound Machines

16/05/2024 0 Comments 0 tags

Security researchers have disclosed almost a dozen security flaws impacting the GE HealthCare Vivid Ultrasound product family that could be exploited by malicious actors to tamper with patient data and

Google Patches Yet Another Actively Exploited Chrome Zero-Day Vulnerability

16/05/2024 0 Comments 0 tags

Google has rolled out fixes to address a set of nine security issues in its Chrome browser, including a new zero-day that has been exploited in the wild. Assigned the CVE identifier CVE-2024-4947, the vulnerability

Cybercriminals Exploiting Microsoft’s Quick Assist Feature in Ransomware Attacks

16/05/2024 0 Comments 0 tags

The Microsoft Threat Intelligence team said it has observed a threat it tracks under the name Storm-1811 abusing the client management tool Quick Assist to target users in social engineering attacks. “Storm-1811 is

Android 15 Rolls Out Advanced Features to Protect Users from Scams and Malicious Apps

15/05/2024 0 Comments 0 tags

Google is unveiling a set of new features in Android 15 to prevent malicious apps installed on the device from capturing sensitive data. This constitutes an update to the Play Integrity