Category: Uncategorized
-
Palo Alto Networks Completes Acquisition of Talon SecurityWeek News
Palo Alto Networks completed the acquisition of Talon Cyber Security, an Israeli startup selling a secure browser technology to enterprise customers. The post Palo Alto Networks Completes Acquisition of Talon appeared first on SecurityWeek. Read More
-

Google Cloud Resolves Privilege Escalation Flaw Impacting Kubernetes Service [email protected] (The Hacker News)
Google Cloud has addressed a medium-severity security flaw in its platform that could be abused by an attacker who already has access to a Kubernetes cluster to escalate their privileges. “An attacker who has compromised the Fluent Bit logging container could combine that access with high privileges required by Anthos Service Mesh (on clusters that have enabled it) toRead…
-
The Emerging Landscape of AI-Driven Cybersecurity Threats: A Look Ahead Rik Ferguson
While AI can significantly bolster defense mechanisms, it also equips adversaries with powerful tools to launch sophisticated cyberattacks. The post The Emerging Landscape of AI-Driven Cybersecurity Threats: A Look Ahead appeared first on SecurityWeek. Read More
-
LoanCare Notifying 1.3 Million of Data Breach Following Cyberattack on Parent Company Ionut Arghire
LoanCare is informing 1.3 million individuals that their personal information was compromised in a data breach. The post LoanCare Notifying 1.3 Million of Data Breach Following Cyberattack on Parent Company appeared first on SecurityWeek. Read More
-
Ohio Lottery Hit by Ransomware, Hackers Claim Theft of Employee and Player Data Eduard Kovacs
The DragonForce ransomware group has taken credit for the Ohio Lottery hack, claiming to have stolen millions of data records. The post Ohio Lottery Hit by Ransomware, Hackers Claim Theft of Employee and Player Data appeared first on SecurityWeek. Read More
-

Most Sophisticated iPhone Hack Ever Exploited Apple’s Hidden Hardware Feature [email protected] (The Hacker News)
The Operation Triangulation spyware attacks targeting Apple iOS devices leveraged never-before-seen exploits that made it possible to even bypass pivotal hardware-based security protections erected by the company. Russian cybersecurity firm Kaspersky, which discovered the campaign at the beginning of 2023 after becoming one of the targets, described it asRead More
-
Mysterious Apple SoC Feature Exploited to Hack Kaspersky Employee iPhones Ionut Arghire
iOS zero-click attack targeting Kaspersky iPhones bypassed hardware-based security protections to take over devices. The post Mysterious Apple SoC Feature Exploited to Hack Kaspersky Employee iPhones appeared first on SecurityWeek. Read More
-
Barracuda Zero-Day Used to Target Government, Tech Organizations in US, APJ Eduard Kovacs
The new Barracuda ESG zero-day CVE-2023-7102 has been used by Chinese hackers to target organizations in the US and APJ region. The post Barracuda Zero-Day Used to Target Government, Tech Organizations in US, APJ appeared first on SecurityWeek. Read More
-

New Rugmi Malware Loader Surges with Hundreds of Daily Detections [email protected] (The Hacker News)
A new malware loader is being used by threat actors to deliver a wide range of information stealers such as Lumma Stealer (aka LummaC2), Vidar, RecordBreaker (aka Raccoon Stealer V2), and Rescoms. Cybersecurity firm ESET is tracking the trojan under the name Win/TrojanDownloader.Rugmi. “This malware is a loader with three types of components: a downloader that downloads anRead More
-
Google Chrome WebRTC Heap buffer overflow (CVE-2023-7024)
What is the Vulnerability? A zero-day vulnerability in Google Chrome is actively exploited in the wild. The vulnerability is a Heap buffer overflow issue in the open-source WebRTC framework. Many other web browsers, such as Mozilla Firefox, Safari, and Microsoft Edge, also use the WebRTC framework to provide Real-Time Communications (RTC) capabilities. A successful exploitation…
