Category: Uncategorized
-

PEACHPIT: Massive Ad Fraud Botnet Powered by Millions of Hacked Android and iOS [email protected] (The Hacker News)
An ad fraud botnet dubbed PEACHPIT leveraged an army of hundreds of thousands of Android and iOS devices to generate illicit profits for the threat actors behind the scheme. The botnet is part of a larger China-based operation codenamed BADBOX, which also entails selling off-brand mobile and connected TV (CTV) devices on popular online retailers and resale sites…
-
Recently Patched TagDiv Plugin Flaw Exploited to Hack Thousands of WordPress Sites Eduard Kovacs
Recently patched TagDiv Composer plugin vulnerability exploited to hack thousands of WordPress sites as part of the Balada Injector campaign. The post Recently Patched TagDiv Plugin Flaw Exploited to Hack Thousands of WordPress Sites appeared first on SecurityWeek. Read More
-
Credential Harvesting Campaign Targets Unpatched NetScaler Instances Ionut Arghire
Threat actors are targeting Citrix NetScaler instances unpatched against CVE-2023-3519 to steal user credentials. The post Credential Harvesting Campaign Targets Unpatched NetScaler Instances appeared first on SecurityWeek. Read More
-

Cybercriminals Using EvilProxy Phishing Kit to Target Senior Executives in U.S. Firms [email protected] (The Hacker News)
Senior executives working in U.S.-based organizations are being targeted by a new phishing campaign that leverages a popular adversary-in-the-middle (AiTM) phishing toolkit named EvilProxy to conduct credential harvesting and account takeover attacks. Menlo Security said the activity started in July 2023, primarily singling out banking and financial services, insurance, property management andRead More
-

Webinar: How vCISOs Can Navigating the Complex World of AI and LLM Security [email protected] (The Hacker News)
In today’s rapidly evolving technological landscape, the integration of Artificial Intelligence (AI) and Large Language Models (LLMs) has become ubiquitous across various industries. This wave of innovation promises improved efficiency and performance, but lurking beneath the surface are complex vulnerabilities and unforeseen risks that demand immediate attention from cybersecurity professionalsRead More
-
Patches Prepared for ‘Probably Worst’ cURL Vulnerability Ionut Arghire
A high-severity vulnerability in the data transfer project cURL will be addressed with libcurl and curl updates this week. The post Patches Prepared for ‘Probably Worst’ cURL Vulnerability appeared first on SecurityWeek. Read More
-

“I Had a Dream” and Generative AI Jailbreaks [email protected] (The Hacker News)
“Of course, here’s an example of simple code in the Python programming language that can be associated with the keywords “MyHotKeyHandler,” “Keylogger,” and “macOS,” this is a message from ChatGPT followed by a piece of malicious code and a brief remark not to use it for illegal purposes. Initially published by Moonlock Lab, the screenshots of…
-
DC Board of Elections Discloses Data Breach Ionut Arghire
The District of Columbia Board of Elections says voter records were compromised in a data breach at hosting provider DataNet. The post DC Board of Elections Discloses Data Breach appeared first on SecurityWeek. Read More
-

High-Severity Flaws in ConnectedIO’s 3G/4G Routers Raise Concerns for IoT Security [email protected] (The Hacker News)
Multiple high-severity security vulnerabilities have been disclosed in ConnectedIO’s ER2000 edge routers and the cloud-based management platform that could be exploited by malicious actors to execute malicious code and access sensitive data. “An attacker could have leveraged these flaws to fully compromise the cloud infrastructure, remotely execute code, and leak all customer and deviceRead More
-
Google Expands Bug Bounty Program With Chrome, Cloud CTF Events Ionut Arghire
Google is hosting capture the flag (CTF) events focused on Chrome’s V8 engine and on Kernel-based Virtual Machine (KVM). The post Google Expands Bug Bounty Program With Chrome, Cloud CTF Events appeared first on SecurityWeek. Read More
