Telerik Report Server Flaw Could Let Attackers Create Rogue Admin Accounts

04/06/2024 0 Comments 0 tags

Progress Software has rolled out updates to address a critical security flaw impacting the Telerik Report Server that could be potentially exploited by a remote attacker to bypass authentication and

The Next Generation of RBI (Remote Browser Isolation)

04/06/2024 0 Comments 0 tags

The landscape of browser security has undergone significant changes over the past decade. While Browser Isolation was once considered the gold standard for protecting against browser exploits and malware downloads,

Hackers Use MS Excel Macro to Launch Multi-Stage Malware Attack in Ukraine

04/06/2024 0 Comments 0 tags

A new sophisticated cyber attack has been observed targeting endpoints geolocated to Ukraine with an aim to deploy Cobalt Strike and seize control of the compromised hosts. The attack chain,

Snowflake Warns: Targeted Credential Theft Campaign Hits Cloud Customers

04/06/2024 0 Comments 0 tags

Cloud computing and analytics company Snowflake said a “limited number” of its customers have been singled out as part of a targeted campaign. “We have not identified evidence suggesting this

DarkGate Malware Replaces AutoIt with AutoHotkey in Latest Cyber Attacks

04/06/2024 0 Comments 0 tags

Cyber attacks involving the DarkGate malware-as-a-service (MaaS) operation have shifted away from AutoIt scripts to an AutoHotkey mechanism to deliver the last stages, underscoring continued efforts on the part of

Oracle WebLogic Server OS Command Injection Flaw Under Active Attack

04/06/2024 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a security flaw impacting the Oracle WebLogic Server to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active

Researchers Uncover RAT-Dropping npm Package Targeting Gulp Users

03/06/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered a new suspicious package uploaded to the npm package registry that’s designed to drop a remote access trojan (RAT) on compromised systems. The package in question

Authorities Ramp Up Efforts to Capture the Mastermind Behind Emotet

03/06/2024 0 Comments 0 tags

Law enforcement authorities behind Operation Endgame are seeking information related to an individual who goes by the name Odd and is allegedly the mastermind behind the Emotet malware.  Odd is

SASE Threat Report: 8 Key Findings for Enterprise Security

03/06/2024 0 Comments 0 tags

Threat actors are evolving, yet Cyber Threat Intelligence (CTI) remains confined to each isolated point solution. Organizations require a holistic analysis across external data, inbound and outbound threats and network

Researcher Uncovers Flaws in Cox Modems, Potentially Impacting Millions

03/06/2024 0 Comments 0 tags

Now-patched authorization bypass issues impacting Cox modems that could have been abused as a starting point to gain unauthorized access to the devices and run malicious commands. “This series of