Category: Uncategorized
-
Johnson Controls Hit by Ransomware Eduard Kovacs
Johnson Controls has confirmed being hit by a disruptive cyberattack, with a ransomware group claiming to have stolen 27Tb of information from the company. The post Johnson Controls Hit by Ransomware appeared first on SecurityWeek. Read More
-

Microsoft’s AI-Powered Bing Chat Ads May Lead Users to Malware-Distributing Sites [email protected] (The Hacker News)
Malicious ads served inside Microsoft Bing’s artificial intelligence (AI) chatbot are being used to distribute malware when searching for popular tools. The findings come from Malwarebytes, which revealed that unsuspecting users can be tricked into visiting booby-trapped sites and installing malware directly from Bing Chat conversations. Introduced by Microsoft in February 2023, Bing Chat is…
-

Progress Software Releases Urgent Hotfixes for Multiple Security Flaws in WS_FTP Server [email protected] (The Hacker News)
Progress Software has released hotfixes for a critical security vulnerability, alongside seven other flaws, in the WS_FTP Server Ad hoc Transfer Module and in the WS_FTP Server manager interface. Tracked as CVE-2023-40044, the flaw has a CVSS score of 10.0, indicating maximum severity. All versions of the software are impacted by the flaw. “In WS_FTP Server…
-

Cisco Warns of Vulnerability in IOS and IOS XE Software After Exploitation Attempts [email protected] (The Hacker News)
Cisco is warning of attempted exploitation of a security flaw in its IOS Software and IOS XE Software that could permit an authenticated remote attacker to achieve remote code execution on affected systems. The medium-severity vulnerability is tracked as CVE-2023-20109, and has a CVSS score of 6.6. It impacts all versions of the software that have…
-
US State Department Says 60,000 Emails Taken in Alleged Chinese Hack AFP
The US State Department said that hackers took around 60,000 emails in an attack which Microsoft has blamed on China. The post US State Department Says 60,000 Emails Taken in Alleged Chinese Hack appeared first on SecurityWeek. Read More
-
Progress Software Patches Critical Pre-Auth Flaws in WS_FTP Server Product Ryan Naraine
Progress Software ships patches for critical-severity flaws in its WS_FTP file transfer software and warns that a pre-authenticated attacker could wreak havoc on the underlying operating system. The post Progress Software Patches Critical Pre-Auth Flaws in WS_FTP Server Product appeared first on SecurityWeek. Read More
-

GitHub Repositories Hit by Password-Stealing Commits Disguised as Dependabot Contributions [email protected] (The Hacker News)
A new malicious campaign has been observed hijacking GitHub accounts and committing malicious code disguised as Dependabot contributions with an aim to steal passwords from developers. “The malicious code exfiltrates the GitHub project’s defined secrets to a malicious C2 server and modify any existing javascript files in the attacked project with a web-form password-stealer malware…
-
US, Japan warn China-linked ‘BlackTech’ targeting routers
Post ContentRead More
-
Cisco patches zero-day vulnerability under attack
Post ContentRead More
-
Verisoul Raises $3.25 Million in Seed Funding to Detect Fake Users Eduard Kovacs
Verisoul, a company that has developed a SaaS platform for detecting and blocking fake users, has raised $3.25 million in seed funding. The post Verisoul Raises $3.25 Million in Seed Funding to Detect Fake Users appeared first on SecurityWeek. Read More
