Binance Warns of Rising Clipper Malware Attacks Targeting Cryptocurrency Users

17/09/2024 0 Comments 0 tags

Cryptocurrency exchange Binance is warning of an “ongoing” global threat that’s targeting cryptocurrency users with clipper malware with the goal of facilitating financial fraud. Clipper malware, also called ClipBankers, is

SolarWinds Issues Patch for Critical ARM Vulnerability Enabling RCE Attacks

17/09/2024 0 Comments 0 tags

SolarWinds has released fixes to address two security flaws in its Access Rights Manager (ARM) software, including a critical vulnerability that could result in remote code execution. The vulnerability, tracked

Master Your PCI DSS v4 Compliance with Innovative Smart Approvals

16/09/2024 0 Comments 0 tags

The PCI DSS landscape is evolving rapidly. With the Q1 2025 deadline looming ever larger, businesses are scrambling to meet the stringent new requirements of PCI DSS v4.0. Two sections

Google Fixes GCP Composer Flaw That Could’ve Led to Remote Code Execution

16/09/2024 0 Comments 0 tags

A now-patched critical security flaw impacting Google Cloud Platform (GCP) Composer could have been exploited to achieve remote code execution on cloud servers by means of a supply chain attack

North Korean Hackers Target Cryptocurrency Users on LinkedIn with RustDoor Malware

16/09/2024 0 Comments 0 tags

Cybersecurity researchers are continuing to warn about North Korean threat actors’ attempts to target prospective victims on LinkedIn to deliver malware called RustDoor. The latest advisory comes from Jamf Threat

From Breach to Recovery: Designing an Identity-Focused Incident Response Playbook

16/09/2024 0 Comments 0 tags

Imagine this… You arrive at work to a chaotic scene. Systems are down, panic is in the air. The culprit? Not a rogue virus, but a compromised identity. The attacker

Apple Drops Spyware Case Against NSO Group, Citing Risk of Threat Intelligence Exposure

16/09/2024 0 Comments 0 tags

Apple has filed a motion to “voluntarily” dismiss its lawsuit against commercial spyware vendor NSO Group, citing a shifting risk landscape that could lead to exposure of critical “threat intelligence”

Cybercriminals Exploit HTTP Headers for Credential Theft via Large-Scale Phishing Attacks

16/09/2024 0 Comments 0 tags

Cybersecurity researchers have warned of ongoing phishing campaigns that abuse refresh entries in HTTP headers to deliver spoofed email login pages that are designed to harvest users’ credentials. “Unlike other

Ivanti Warns of Active Exploitation of Newly Patched Cloud Appliance Vulnerability

14/09/2024 0 Comments 0 tags

Ivanti has revealed that a newly patched security flaw in its Cloud Service Appliance (CSA) has come under active exploitation in the wild. The high-severity vulnerability in question is CVE-2024-8190

Apple Vision Pro Vulnerability Exposed Virtual Keyboard Inputs to Attackers

13/09/2024 0 Comments 0 tags

Details have emerged about a now-patched security flaw impacting Apple’s Vision Pro mixed reality headset that, if successfully exploited, could allow malicious attackers to infer data entered on the device’s