Adobe Rolls Out New Patches for Actively Exploited ColdFusion Vulnerability

20/07/2023 0 Comments 0 tags

Adobe has released a fresh round of updates to address an incomplete fix for a recently disclosed ColdFusion flaw that has come under active exploitation in the wild. The critical

How to Manage Your Attack Surface?

20/07/2023 0 Comments 0 tags

Attack surfaces are growing faster than security teams can keep up. To stay ahead, you need to know what’s exposed and where attackers are most likely to strike. With cloud

CISA and NSA Issue New Guidance to Strengthen 5G Network Slicing Against Threats

20/07/2023 0 Comments 0 tags

U.S. cybersecurity and intelligence agencies have released a set of recommendations to address security concerns with 5G standalone network slicing and harden them against possible threats. “The threat landscape in 5G is

Chinese APT41 Hackers Target Mobile Devices with New WyrmSpy and DragonEgg Spyware

20/07/2023 0 Comments 0 tags

The prolific China-linked nation-state actor known as APT41 has been linked to two previously undocumented strains of Android spyware called WyrmSpy and DragonEgg. “Known for its exploitation of web-facing applications

Exploring the Dark Side: OSINT Tools and Techniques for Unmasking Dark Web Operations

20/07/2023 0 Comments 0 tags

On April 5, 2023, the FBI and Dutch National Police announced the takedown of Genesis Market, one of the largest dark web marketplaces. The operation, dubbed “Operation Cookie Monster,” resulted in

Bad.Build Flaw in Google Cloud Build Raises Concerns of Privilege Escalation

20/07/2023 0 Comments 0 tags

Cybersecurity researchers have uncovered a privilege escalation vulnerability in Google Cloud that could enable malicious actors tamper with application images and infect users, leading to supply chain attacks. The issue,

U.S. Government Blacklists Cytrox and Intellexa Spyware Vendors for Cyber Espionage

20/07/2023 0 Comments 0 tags

The U.S. government on Tuesday added two foreign commercial spyware vendors, Cytrox and Intellexa, to an economic blocklist for weaponizing cyber exploits to gain unauthorized access to devices and “threatening

Zero-Day Attacks Exploited Critical Vulnerability in Citrix ADC and Gateway

20/07/2023 0 Comments 0 tags

Citrix is alerting users of a critical security flaw in NetScaler Application Delivery Controller (ADC) and Gateway that it said is being actively exploited in the wild. Tracked as CVE-2023-3519 (CVSS score: 9.8), the

Go Beyond the Headlines for Deeper Dives into the Cybercriminal Underground

19/07/2023 0 Comments 0 tags

Discover stories about threat actors’ latest tactics, techniques, and procedures from Cybersixgill’s threat experts each month. Each story brings you details on emerging underground threats, the threat actors involved, and

FIN8 Group Using Modified Sardonic Backdoor for BlackCat Ransomware Attacks

19/07/2023 0 Comments 0 tags

The financially motivated threat actor known as FIN8 has been observed using a “revamped” version of a backdoor called Sardonic to deliver the BlackCat ransomware. According to the Symantec Threat Hunter Team, part