New Chrome Zero-Day Vulnerability CVE-2024-4761 Under Active Exploitation

15/05/2024 0 Comments 0 tags

Google on Monday shipped emergency fixes to address a new zero-day flaw in the Chrome web browser that has come under active exploitation in the wild. The high-severity vulnerability, tracked as CVE-2024-4761,

VMware Patches Severe Security Flaws in Workstation and Fusion Products

15/05/2024 0 Comments 0 tags

Multiple security flaws have been disclosed in VMware Workstation and Fusion products that could be exploited by threat actors to access sensitive information, trigger a denial-of-service (DoS) condition, and execute code under

Ongoing Campaign Bombarded Enterprises with Spam Emails and Phone Calls

14/05/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered an ongoing social engineering campaign that bombards enterprises with spam emails with the goal of obtaining initial access to their environments for follow-on exploitation. “The incident involves a

6 Mistakes Organizations Make When Deploying Advanced Authentication

14/05/2024 0 Comments 0 tags

Deploying advanced authentication measures is key to helping organizations address their weakest cybersecurity link: their human users. Having some form of 2-factor authentication in place is a great start, but many organizations may

Critical Flaws in Cacti Framework Could Let Attackers Execute Malicious Code

14/05/2024 0 Comments 0 tags

The maintainers of the Cacti open-source network monitoring and fault management framework have addressed a dozen security flaws, including two critical issues that could lead to the execution of arbitrary code. The

Apple and Google Launch Cross-Platform Feature to Detect Unwanted Bluetooth Tracking Devices

14/05/2024 0 Comments 0 tags

Apple and Google on Monday officially announced the rollout of a new feature that notifies users across both iOS and Android if a Bluetooth tracking device is being used to

Malicious Python Package Hides Sliver C2 Framework in Fake Requests Library Logo

14/05/2024 0 Comments 0 tags

Cybersecurity researchers have identified a malicious Python package that purports to be an offshoot of the popular requests library and has been found concealing a Golang-version of the Sliver command-and-control (C2) framework within a

Black Basta Ransomware Strikes 500+ Entities Across North America, Europe, and Australia

14/05/2024 0 Comments 0 tags

The Black Basta ransomware-as-a-service (RaaS) operation has targeted more than 500 private industry and critical infrastructure entities in North America, Europe, and Australia since its emergence in April 2022. In

Severe Vulnerabilities in Cinterion Cellular Modems Pose Risks to Various Industries

14/05/2024 0 Comments 0 tags

Cybersecurity researchers have disclosed multiple security flaws in Cinterion cellular modems that could be potentially exploited by threat actors to access sensitive information and achieve code execution. “These vulnerabilities include

SHQ Response Platform and Risk Centre to Enable Management and Analysts Alike

14/05/2024 0 Comments 0 tags

In the last decade, there has been a growing disconnect between front-line analysts and senior management in IT and Cybersecurity. Well-documented challenges facing modern analysts revolve around a high volume