Category: Uncategorized
-

Cloudflare Breach: Nation-State Hackers Access Source Code and Internal Docs [email protected] (The Hacker News)
Cloudflare has revealed that it was the target of a likely nation-state attack in which the threat actor leveraged stolen credentials to gain unauthorized access to its Atlassian server and ultimately access some documentation and a limited amount of source code. The intrusion, which took place between November 14 and 24, 2023, and detected on…
-
Albania’s Institute of Statistics Suffers Cyberattack, Some Systems Affected Associated Press
Albania’s Institute of Statistics (INSTAT) suffered a cyberattack which affected some of its systems. The post Albania’s Institute of Statistics Suffers Cyberattack, Some Systems Affected appeared first on SecurityWeek. Read More
-
Atlassian Confluence Remote Code Execution (CVE-2023-22527)
What is the Vulnerability? On Jan 16 2024, Atlassian released an advisory for a template injection vulnerability on Confluence Data Center and Server. That can allow an unauthenticated attacker to remotely execute malicious code on affected versions. This vulnerability is rated with a severity level of 10.0 (Critical). What is the Vendor Solution? Atlassian highly…
-
CISA Sets 48-hour Deadline for Removal of Insecure Ivanti Products Ryan Naraine
In an unprecedented move, CISA is demanding that federal agencies disconnect all instances of Ivanti Connect Secure and Ivanti Policy Secure products within 48 hours. The post CISA Sets 48-hour Deadline for Removal of Insecure Ivanti Products appeared first on SecurityWeek. Read More
-

FritzFrog Returns with Log4Shell and PwnKit, Spreading Malware Inside Your Network [email protected] (The Hacker News)
The threat actor behind a peer-to-peer (P2P) botnet known as FritzFrog has made a return with a new variant that leverages the Log4Shell vulnerability to propagate internally within an already compromised network. “The vulnerability is exploited in a brute-force manner that attempts to target as many vulnerable Java applications as possible,” web infrastructure and securityRead More
-
‘Leaky Vessels’ Container Escape Vulnerabilities Impact Docker, Others Eduard Kovacs
Snyk discloses information on Leaky Vessels, several potentially serious container escape vulnerabilities affecting Docker and others. The post ‘Leaky Vessels’ Container Escape Vulnerabilities Impact Docker, Others appeared first on SecurityWeek. Read More
-
Watch: Top Cyber Officials Testify on China’s Cyber Threat to US Critical Infrastructure SecurityWeek News
Video: Top US cyber officials testify on China’s cyber threat to U.S. national security and critical infrastrcuture. The post Watch: Top Cyber Officials Testify on China’s Cyber Threat to US Critical Infrastructure appeared first on SecurityWeek. Read More
-
Critical infrastructure hacks raise alarms on Chinese threats
Post ContentRead More
-
Man Sentenced to Prison for Stealing Millions in Cryptocurrency via SIM Swapping Eduard Kovacs
Daniel James Junk sentenced to six years in prison for stealing millions in cryptocurrency through SIM swapping. The post Man Sentenced to Prison for Stealing Millions in Cryptocurrency via SIM Swapping appeared first on SecurityWeek. Read More
-
CISA deputy director touts progress, anti-ransomware efforts
Post ContentRead More
