High-Severity Flaw in PostgreSQL Allows Hackers to Exploit Environment Variables

15/11/2024 0 Comments 0 tags

Cybersecurity researchers have disclosed a high-severity security flaw in the PostgreSQL open-source database system that could allow unprivileged users to alter environment variables, and potentially lead to code execution or

CISA Flags Critical Palo Alto Network Flaws Actively Exploited in the Wild

15/11/2024 0 Comments 0 tags

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday warned that two more flaws impacting the Palo Alto Networks Expedition have come under active exploitation in the wild. To

Experts Uncover 70,000 Hijacked Domains in Widespread ‘Sitting Ducks’ Attack Scheme

14/11/2024 0 Comments 0 tags

Multiple threat actors have been found taking advantage of an attack technique called Sitting Ducks to hijack legitimate domains for using them in phishing attacks and investment fraud schemes for

Google Warns of Rising Cloaking Scams, AI-Driven Fraud, and Crypto Schemes

14/11/2024 0 Comments 0 tags

Google has revealed that bad actors are leveraging techniques like landing page cloaking to conduct scams by impersonating legitimate sites. “Cloaking is specifically designed to prevent moderation systems and teams

5 BCDR Oversights That Leave You Exposed to Ransomware

14/11/2024 0 Comments 0 tags

Ransomware isn’t just a buzzword; it’s one of the most dreaded challenges businesses face in this increasingly digitized world. Ransomware attacks are not only increasing in frequency but also in

New RustyAttr Malware Targets macOS Through Extended Attribute Abuse

14/11/2024 0 Comments 0 tags

Threat actors have been found leveraging a new technique that abuses extended attributes for macOS files to smuggle a new malware called RustyAttr. The Singaporean cybersecurity company has attributed the

TikTok Pixel Privacy Nightmare: A New Case Study

14/11/2024 0 Comments 0 tags

Advertising on TikTok is the obvious choice for any company trying to reach a young market, and especially so if it happens to be a travel company, with 44% of

Russian Hackers Exploit New NTLM Flaw to Deploy RAT Malware via Phishing Emails

14/11/2024 0 Comments 0 tags

A newly patched security flaw impacting Windows NT LAN Manager (NTLM) was exploited as a zero-day by a suspected Russia-linked actor as part of cyber attacks targeting Ukraine. The vulnerability

Hamas-Affiliated WIRTE Employs SameCoin Wiper in Disruptive Attacks Against Israel

13/11/2024 0 Comments 0 tags

A threat actor affiliated with Hamas has expanded its malicious cyber operations beyond espionage to carry out disruptive attacks that exclusively target Israeli entities. The activity, linked to a group

Free Decryptor Released for BitLocker-Based ShrinkLocker Ransomware Victims

13/11/2024 0 Comments 0 tags

Romanian cybersecurity company Bitdefender has released a free decryptor to help victims recover data encrypted using the ShrinkLocker ransomware. The decryptor is the result of a comprehensive analysis of ShrinkLocker’s