14 Kubernetes and Cloud Security Challenges and How to Solve Them

21/04/2023 0 Comments 0 tags

Recently, Andrew Martin, founder and CEO of ControlPlane, released a report entitled Cloud Native and Kubernetes Security Predictions 2023. These predictions underscore the rapidly evolving landscape of Kubernetes and cloud

GhostToken Flaw Could Let Attackers Hide Malicious Apps in Google Cloud Platform

21/04/2023 0 Comments 0 tags

Cybersecurity researchers have disclosed details of a now-patched zero-day flaw in Google Cloud Platform (GCP) that could have enabled threat actors to conceal an unremovable, malicious application inside a victim’s

Cisco and VMware Release Security Updates to Patch Critical Flaws in their Products

21/04/2023 0 Comments 0 tags

Cisco and VMware have released security updates to address critical security flaws in their products that could be exploited by malicious actors to execute arbitrary code on affected systems. The

Two Critical Flaws Found in Alibaba Cloud’s PostgreSQL Databases

20/04/2023 0 Comments 0 tags

A chain of two critical flaws has been disclosed in Alibaba Cloud’s ApsaraDB RDS for PostgreSQL and AnalyticDB for PostgreSQL that could be exploited to breach tenant isolation protections and

Lazarus Group Adds Linux Malware to Arsenal in Operation Dream Job

20/04/2023 0 Comments 0 tags

The notorious North Korea-aligned state-sponsored actor known as the Lazarus Group has been attributed to a new campaign aimed at Linux users. The attacks are part of a persistent and long-running activity

Beyond Traditional Security: NDR’s Pivotal Role in Safeguarding OT Networks

20/04/2023 0 Comments 0 tags

Why is Visibility into OT Environments Crucial? The significance of Operational Technology (OT) for businesses is undeniable as the OT sector flourishes alongside the already thriving IT sector. OT includes

NSO Group Used 3 Zero-Click iPhone Exploits Against Human Rights Defenders

20/04/2023 0 Comments 0 tags

Israeli spyware maker NSO Group deployed at least three novel “zero-click” exploits against iPhones in 2022 to infiltrate defenses erected by Apple and deploy Pegasus, according to the latest findings

Daggerfly Cyberattack Campaign Hits African Telecom Services Providers

20/04/2023 0 Comments 0 tags

Telecommunication services providers in Africa are the target of a new campaign orchestrated by a China-linked threat actor at least since November 2022. The intrusions have been pinned on a

ChatGPT’s Data Protection Blind Spots and How Security Teams Can Solve Them

20/04/2023 0 Comments 0 tags

In the short time since their inception, ChatGPT and other generative AI platforms have rightfully gained the reputation of ultimate productivity boosters. However, the very same technology that enables rapid

Fortra Sheds Light on GoAnywhere MFT Zero-Day Exploit Used in Ransomware Attacks

20/04/2023 0 Comments 0 tags

Fortra, the company behind Cobalt Strike, shed light on a zero-day remote code execution (RCE) vulnerability in its GoAnywhere MFT tool that has come under active exploitation by ransomware actors to steal sensitive