Category: Uncategorized
-

There is a Ransomware Armageddon Coming for Us All [email protected] (The Hacker News)
Generative AI will enable anyone to launch sophisticated phishing attacks that only Next-generation MFA devices can stop The least surprising headline from 2023 is that ransomware again set new records for a number of incidents and the damage inflicted. We saw new headlines every week, which included a who’s-who of big-name organizations. If MGM, Johnson…
-

Atomic Stealer Gets an Upgrade – Targeting Mac Users with Encrypted Payload [email protected] (The Hacker News)
Cybersecurity researchers have identified an updated version of a macOS information stealer called Atomic (or AMOS), indicating that the threat actors behind the malware are actively enhancing its capabilities. “It looks like Atomic Stealer was updated around mid to late December 2023, where its developers introduced payload encryption in an effort to bypass detection rules,”Read More
-
Cisco Patches Critical Vulnerability in Unity Connection Product Ionut Arghire
Cisco Unity Connection flaw could allow remote, unauthenticated attackers to upload arbitrary files and execute commands on the system. The post Cisco Patches Critical Vulnerability in Unity Connection Product appeared first on SecurityWeek. Read More
-
Mandiant Details How Its X Account Was Hacked Eduard Kovacs
Mandiant’s X account was hacked as a result of a brute force attack as part of a cryptocurrency scheme that earned at least $900k. The post Mandiant Details How Its X Account Was Hacked appeared first on SecurityWeek. Read More
-

Mandiant’s X Account Was Hacked Using Brute-Force Attack [email protected] (The Hacker News)
The compromise of Mandiant’s X (formerly Twitter) account last week was likely the result of a “brute-force password attack,” attributing the hack to a drainer-as-a-service (DaaS) group. “Normally, [two-factor authentication] would have mitigated this, but due to some team transitions and a change in X’s 2FA policy, we were not adequately protected,” the threat intelligence…
-

Chinese Hackers Exploit Zero-Day Flaws in Ivanti Connect Secure and Policy Secure [email protected] (The Hacker News)
A pair of zero-day flaws identified in Ivanti Connect Secure (ICS) and Policy Secure have been chained by suspected China-linked nation-state actors to breach less than 10 customers. Cybersecurity firm Volexity, which identified the activity on the network of one of its customers in the second week of December 2023, attributed it to a hacking group it…
-

Cisco Fixes High-Risk Vulnerability Impacting Unity Connection Software [email protected] (The Hacker News)
Cisco has released software updates to address a critical security flaw impacting Unity Connection that could permit an adversary to execute arbitrary commands on the underlying system. Tracked as CVE-2024-20272 (CVSS score: 7.3), the vulnerability is an arbitrary file upload bug residing in the web-based management interface and is the result of a lack of authentication in…
-
Microsoft SharePoint Server Elevation of Privilege Vulnerability
Post ContentRead More
-
Volexity Catches Chinese Hackers Exploiting Ivanti VPN Zero-Days Ryan Naraine
Ivanti confirms active zero-day exploits, ships pre-patch mitigations, but says comprehensive fixes won’t be available until January 22. The post Volexity Catches Chinese Hackers Exploiting Ivanti VPN Zero-Days appeared first on SecurityWeek. Read More
-
Microsoft SharePoint Server Elevation of Privilege Vulnerability (CVE-2023-29357)
What is the vulnerability? A vulnerability in Microsoft SharePoint Server is actively being exploited and targeting servers from Government, Telco and Education industries. The vulnerability tracked under CVE-2023-29357 is an authentication bypass vulnerability that adversaries may use to escalate privileges on affected installations of Microsoft SharePoint Server. Attackers may chain the vulnerability with other vulnerabilities…
