Cisco Warns of Critical Flaw Affecting On-Prem Smart Software Manager

18/07/2024 0 Comments 0 tags

Cisco has released patches to address a maximum-severity security flaw impacting Smart Software Manager On-Prem (Cisco SSM On-Prem) that could enable a remote, unauthenticated attacker to change the password of

North Korean Hackers Update BeaverTail Malware to Target MacOS Users

17/07/2024 0 Comments 0 tags

Cybersecurity researchers have discovered an updated variant of a known stealer malware that attackers affiliated with the Democratic People’s Republic of Korea (DPRK) have delivered as part of prior cyber

Navigating Insider Risks: Are your Employees Enabling External Threats?

17/07/2024 0 Comments 0 tags

Attacks on your network are often meticulously planned operations launched by sophisticated threats. Sometimes your technical fortifications provide a formidable challenge, and the attack requires assistance from the inside to

FIN7 Group Advertises Security-Bypassing Tool on Dark Web Forums

17/07/2024 0 Comments 0 tags

The financially motivated threat actor known as FIN7 has been observed using multiple pseudonyms across several underground forums to likely advertise a tool known to be used by ransomware groups

China-linked APT17 Targets Italian Companies with 9002 RAT Malware

17/07/2024 0 Comments 0 tags

A China-linked threat actor called APT17 has been observed targeting Italian companies and government entities using a variant of a known malware referred to as 9002 RAT. The two targeted

Scattered Spider Adopts RansomHub and Qilin Ransomware for Cyber Attacks

17/07/2024 0 Comments 0 tags

The infamous cybercrime group known as Scattered Spider has incorporated ransomware strains such as RansomHub and Qilin into its arsenal, Microsoft has revealed. Scattered Spider is the designation given to

Critical Apache HugeGraph Vulnerability Under Attack – Patch ASAP

17/07/2024 0 Comments 0 tags

Threat actors are actively exploiting a recently disclosed critical security flaw impacting Apache HugeGraph-Server that could lead to remote code execution attacks. Tracked as CVE-2024-27348 (CVSS score: 9.8), the vulnerability

‘Konfety’ Ad Fraud Uses 250+ Google Play Decoy Apps to Hide Malicious Twins

16/07/2024 0 Comments 0 tags

Details have emerged about a “massive ad fraud operation” that leverages hundreds of apps on the Google Play Store to perform a host of nefarious activities. The campaign has been

Threat Prevention & Detection in SaaS Environments – 101

16/07/2024 0 Comments 0 tags

Identity-based threats on SaaS applications are a growing concern among security professionals, although few have the capabilities to detect and respond to them.  According to the US Cybersecurity and Infrastructure

Malicious npm Packages Found Using Image Files to Hide Backdoor Code

16/07/2024 0 Comments 0 tags

Cybersecurity researchers have identified two malicious packages on the npm package registry that concealed backdoor code to execute malicious commands sent from a remote server. The packages in question –