Chinese Hackers Exploited FortiGate Flaw to Breach Dutch Military Network

07/02/2024 0 Comments 0 tags

Chinese state-backed hackers broke into a computer network that’s used by the Dutch armed forces by targeting Fortinet FortiGate devices. “This [computer network] was used for unclassified research and development

Critical JetBrains TeamCity On-Premises Flaw Exposes Servers to Takeover – Patch Now

07/02/2024 0 Comments 0 tags

JetBrains is alerting customers of a critical security flaw in its TeamCity On-Premises continuous integration and continuous deployment (CI/CD) software that could be exploited by threat actors to take over

How a $10B Enterprise Customer Drastically Increased their SaaS Security Posture with 201% ROI by Using SSPM

07/02/2024 0 Comments 0 tags

SaaS applications are the darlings of the software world. They enable work from anywhere, facilitate collaboration, and offer a cost-effective alternative to owning the software outright. At the same time,

Beware: Fake Facebook Job Ads Spreading ‘Ov3r_Stealer’ to Steal Crypto and Credentials

07/02/2024 0 Comments 0 tags

Threat actors are leveraging bogus Facebook job advertisements as a lure to trick prospective targets into installing a new Windows-based stealer malware codenamed Ov3r_Stealer. “This malware is designed to steal credentials

Experts Detail New Flaws in Azure HDInsight Spark, Kafka, and Hadoop Services

07/02/2024 0 Comments 0 tags

Three new security vulnerabilities have been discovered in Azure HDInsight’s Apache Hadoop, Kafka, and Spark services that could be exploited to achieve privilege escalation and a regular expression denial-of-service (ReDoS) condition. “The new vulnerabilities

Hackers Exploit Job Boards in APAC, Steal Data of Millions of Job Seekers

06/02/2024 0 Comments 0 tags

Employment agencies and retail companies chiefly located in the Asia-Pacific (APAC) region have been targeted by a previously undocumented threat actor known as ResumeLooters since early 2023 with the goal of stealing

Recent SSRF Flaw in Ivanti VPN Products Undergoes Mass Exploitation

06/02/2024 0 Comments 0 tags

A recently disclosed server-side request forgery (SSRF) vulnerability impacting Ivanti Connect Secure and Policy Secure products has come under mass exploitation. The Shadowserver Foundation said it observed exploitation attempts originating from more

U.S. Imposes Visa Restrictions on those Involved in Illegal Spyware Surveillance

06/02/2024 0 Comments 0 tags

The U.S. State Department said it’s implementing a new policy that imposes visa restrictions on individuals who are linked to the illegal use of commercial spyware to surveil civil society

Belarusian National Linked to BTC-e Faces 25 Years for $4 Billion Crypto Money Laundering

05/02/2024 0 Comments 0 tags

A 42-year-old Belarusian and Cypriot national with alleged connections to the now-defunct cryptocurrency exchange BTC-e is facing charges related to money laundering and operating an unlicensed money services business. Aliaksandr

Combined Security Practices Changing the Game for Risk Management

05/02/2024 0 Comments 0 tags

A significant challenge within cyber security at present is that there are a lot of risk management platforms available in the market, but only some deal with cyber risks in