Urgent: GitLab Patches Critical Flaw Allowing Unauthorized Pipeline Job Execution

12/09/2024 0 Comments 0 tags

GitLab on Wednesday released security updates to address 17 security vulnerabilities, including a critical flaw that allows an attacker to run pipeline jobs as an arbitrary user. The issue, tracked

Beware: New Vo1d Malware Infects 1.3 Million Android TV Boxes Worldwide

12/09/2024 0 Comments 0 tags

Nearly 1.3 million Android-based TV boxes running outdated versions of the operating system and belonging to users spanning 197 countries have been infected by a new malware dubbed Vo1d (aka

Exposed Selenium Grid Servers Targeted for Crypto Mining and Proxyjacking

12/09/2024 0 Comments 0 tags

Internet-exposed Selenium Grid instances are being targeted by bad actors for illicit cryptocurrency mining and proxyjacking campaigns. “Selenium Grid is a server that facilitates running test cases in parallel across

Top 3 Threat Report Insights for Q2 2024

12/09/2024 0 Comments 0 tags

Cato CTRL (Cyber Threats Research Lab) has released its Q2 2024 Cato CTRL SASE Threat Report. The report highlights critical findings based on the analysis of a staggering 1.38 trillion

Iranian Cyber Group OilRig Targets Iraqi Government in Sophisticated Malware Attack

12/09/2024 0 Comments 0 tags

Iraqi government networks have emerged as the target of an “elaborate” cyber attack campaign orchestrated by an Iran state-sponsored threat actor called OilRig. The attacks singled out Iraqi organizations such

Ireland’s Watchdog Launches Inquiry into Google’s AI Data Practices in Europe

12/09/2024 0 Comments 0 tags

The Irish Data Protection Commission (DPC) has announced that it has commenced a “Cross-Border statutory inquiry” into Google’s foundational artificial intelligence (AI) model to determine whether the tech giant has

WordPress Mandates Two-Factor Authentication for Plugin and Theme Developers

12/09/2024 0 Comments 0 tags

WordPress.org has announced a new account security measure that will require accounts with capabilities to update plugins and themes to activate two-factor authentication (2FA) mandatorily. The enforcement is expected to

Quad7 Botnet Expands to Target SOHO Routers and VPN Appliances

11/09/2024 0 Comments 0 tags

The operators of the mysterious Quad7 botnet are actively evolving by compromising several brands of SOHO routers and VPN appliances by leveraging a combination of both known and unknown security

DragonRank Black Hat SEO Campaign Targeting IIS Servers Across Asia and Europe

11/09/2024 0 Comments 0 tags

A “simplified Chinese-speaking actor” has been linked to a new campaign that has targeted multiple countries in Asia and Europe with the end goal of performing search engine optimization (SEO)

Singapore Police Arrest Six Hackers Linked to Global Cybercrime Syndicate

11/09/2024 0 Comments 0 tags

The Singapore Police Force (SPF) has announced the arrest of five Chinese nationals and one Singaporean man for their alleged involvement in illicit cyber activities in the country. The development