OvrC Platform Vulnerabilities Expose IoT Devices to Remote Attacks and Code Execution

13/11/2024 0 Comments 0 tags

A security analysis of the OvrC cloud platform has uncovered 10 vulnerabilities that could be chained to allow potential attackers to execute code remotely on connected devices. “Attackers successfully exploiting

Comprehensive Guide to Building a Strong Browser Security Program

13/11/2024 0 Comments 0 tags

The rise of SaaS and cloud-based work environments has fundamentally altered the cyber risk landscape. With more than 90% of organizational network traffic flowing through browsers and web applications, companies

Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler Bugs

13/11/2024 0 Comments 0 tags

Microsoft on Tuesday revealed that two security flaws impacting Windows NT LAN Manager (NTLM) and Task Scheduler have come under active exploitation in the wild. The security vulnerabilities are among

Iranian Hackers Use “Dream Job” Lures to Deploy SnailResin Malware in Aerospace Attacks

13/11/2024 0 Comments 0 tags

The Iranian threat actor known as TA455 has been observed taking a leaf out of a North Korean hacking group’s playbook to orchestrate its own version of the Dream Job

New Phishing Tool GoIssue Targets GitHub Developers in Bulk Email Campaigns

12/11/2024 0 Comments 0 tags

Cybersecurity researchers are calling attention to a new sophisticated tool called GoIssue that can be used to send phishing messages at scale targeting GitHub users. The program, first marketed by

New Flaws in Citrix Virtual Apps Enable RCE Attacks via MSMQ Misconfiguration

12/11/2024 0 Comments 0 tags

Cybersecurity researchers have disclosed new security flaws impacting Citrix Virtual Apps and Desktop that could be exploited to achieve unauthenticated remote code execution (RCE) The issue, per findings from watchTowr,

North Korean Hackers Target macOS Using Flutter-Embedded Malware

12/11/2024 0 Comments 0 tags

Threat actors with ties to the Democratic People’s Republic of Korea (DPRK aka North Korea) have been found embedding malware within Flutter applications, marking the first time this tactic has

5 Ways Behavioral Analytics is Revolutionizing Incident Response

12/11/2024 0 Comments 0 tags

Behavioral analytics, long associated with threat detection (i.e. UEBA or UBA), is experiencing a renaissance. Once primarily used to identify suspicious activity, it’s now being reimagined as a powerful post-detection

New Ymir Ransomware Exploits Memory for Stealthy Attacks; Targets Corporate Networks

12/11/2024 0 Comments 0 tags

Cybersecurity researchers have flagged a new ransomware family called Ymir that was deployed in an attack two days after systems were compromised by a stealer malware called RustyStealer. “Ymir ransomware

HPE Issues Critical Security Patches for Aruba Access Point Vulnerabilities

11/11/2024 0 Comments 0 tags

Hewlett Packard Enterprise (HPE) has released security updates to address multiple vulnerabilities impacting Aruba Networking Access Point products, including two critical bugs that could result in unauthenticated command execution. The