Apple Drops Spyware Case Against NSO Group, Citing Risk of Threat Intelligence Exposure

16/09/2024 0 Comments 0 tags

Apple has filed a motion to “voluntarily” dismiss its lawsuit against commercial spyware vendor NSO Group, citing a shifting risk landscape that could lead to exposure of critical “threat intelligence”

Cybercriminals Exploit HTTP Headers for Credential Theft via Large-Scale Phishing Attacks

16/09/2024 0 Comments 0 tags

Cybersecurity researchers have warned of ongoing phishing campaigns that abuse refresh entries in HTTP headers to deliver spoofed email login pages that are designed to harvest users’ credentials. “Unlike other

Ivanti Warns of Active Exploitation of Newly Patched Cloud Appliance Vulnerability

14/09/2024 0 Comments 0 tags

Ivanti has revealed that a newly patched security flaw in its Cloud Service Appliance (CSA) has come under active exploitation in the wild. The high-severity vulnerability in question is CVE-2024-8190

17-Year-Old Arrested in Connection with Cyber Attack Affecting Transport for London

13/09/2024 0 Comments 0 tags

British authorities on Thursday announced the arrest of a 17-year-old male in connection with a cyber attack affecting Transport for London (TfL). “The 17-year-old male was detained on suspicion of

Apple Vision Pro Vulnerability Exposed Virtual Keyboard Inputs to Attackers

13/09/2024 0 Comments 0 tags

Details have emerged about a now-patched security flaw impacting Apple’s Vision Pro mixed reality headset that, if successfully exploited, could allow malicious attackers to infer data entered on the device’s

Progress WhatsUp Gold Exploited Just Hours After PoC Release for Critical Flaw

13/09/2024 0 Comments 0 tags

Malicious actors are likely leveraging publicly available proof-of-concept (PoC) exploits for recently disclosed security flaws in Progress Software WhatsUp Gold to conduct opportunistic attacks. The activity is said to have

TrickMo Android Trojan Exploits Accessibility Services for On-Device Banking Fraud

13/09/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered a new variant of an Android banking trojan called TrickMo that comes packed with new capabilities to evade analysis and display fake login screens to capture

Say Goodbye to Phishing: Must-Haves to Eliminate Credential Theft

13/09/2024 0 Comments 0 tags

Even as cyber threats become increasingly sophisticated, the number one attack vector for unauthorized access remains phished credentials (Verizon DBIR, 2024). Solving this problem resolves over 80% of your corporate

New Linux Malware Campaign Exploits Oracle Weblogic to Mine Cryptocurrency

13/09/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered a new malware campaign targeting Linux environments to conduct illicit cryptocurrency mining. The activity, which specifically singles out the Oracle Weblogic server, is designed to deliver

Urgent: GitLab Patches Critical Flaw Allowing Unauthorized Pipeline Job Execution

12/09/2024 0 Comments 0 tags

GitLab on Wednesday released security updates to address 17 security vulnerabilities, including a critical flaw that allows an attacker to run pipeline jobs as an arbitrary user. The issue, tracked