A Few More Reasons Why RDP is Insecure (Surprise!)

21/07/2023 0 Comments 0 tags

If it seems like Remote Desktop Protocol (RDP) has been around forever, it’s because it has (at least compared to the many technologies that rise and fall within just a

North Korean State-Sponsored Hackers Suspected in JumpCloud Supply Chain Attack

21/07/2023 0 Comments 0 tags

An analysis of the indicators of compromise (IoCs) associated with the JumpCloud hack has uncovered evidence pointing to the involvement of North Korean state-sponsored groups, in a style that’s reminiscent

Apache OpenMeetings Web Conferencing Tool Exposed to Critical Vulnerabilities

21/07/2023 0 Comments 0 tags

Multiple security flaws have been disclosed in Apache OpenMeetings, a web conferencing solution, that could be potentially exploited by malicious actors to seize control of admin accounts and run malicious

Mallox Ransomware Exploits Weak MS-SQL Servers to Breach Networks

21/07/2023 0 Comments 0 tags

Mallox ransomware activities in 2023 have witnessed a 174% increase when compared to the previous year, new findings from Palo Alto Networks Unit 42 reveal. “Mallox ransomware, like many other

Critical Flaws in AMI MegaRAC BMC Software Expose Servers to Remote Attacks

21/07/2023 0 Comments 0 tags

Two more security flaws have been disclosed in AMI MegaRAC Baseboard Management Controller (BMC) software that, if successfully exploited, could allow threat actors to remotely commandeer vulnerable servers and deploy

Adobe Rolls Out New Patches for Actively Exploited ColdFusion Vulnerability

20/07/2023 0 Comments 0 tags

Adobe has released a fresh round of updates to address an incomplete fix for a recently disclosed ColdFusion flaw that has come under active exploitation in the wild. The critical

Microsoft Expands Cloud Logging to Counter Rising Nation-State Cyber Threats

20/07/2023 0 Comments 0 tags

Microsoft on Wednesday announced that it’s expanding cloud logging capabilities to help organizations investigate cybersecurity incidents and gain more visibility after facing criticism in the wake of a recent espionage attack

New P2PInfect Worm Targeting Redis Servers on Linux and Windows Systems

20/07/2023 0 Comments 0 tags

Cybersecurity researchers have uncovered a new cloud targeting, peer-to-peer (P2P) worm called P2PInfect that targets vulnerable Redis instances for follow-on exploitation. “P2PInfect exploits Redis servers running on both Linux and Windows Operating

Zero-Day Attacks Exploited Critical Vulnerability in Citrix ADC and Gateway

20/07/2023 0 Comments 0 tags

Citrix is alerting users of a critical security flaw in NetScaler Application Delivery Controller (ADC) and Gateway that it said is being actively exploited in the wild. Tracked as CVE-2023-3519 (CVSS score: 9.8), the

U.S. Government Blacklists Cytrox and Intellexa Spyware Vendors for Cyber Espionage

20/07/2023 0 Comments 0 tags

The U.S. government on Tuesday added two foreign commercial spyware vendors, Cytrox and Intellexa, to an economic blocklist for weaponizing cyber exploits to gain unauthorized access to devices and “threatening