Category: Uncategorized
-
Atlassian Patches Remote Code Execution Vulnerabilities in Confluence, Bamboo Ionut Arghire
Atlassian patches high-severity remote code execution vulnerabilities in Confluence and Bamboo products. The post Atlassian Patches Remote Code Execution Vulnerabilities in Confluence, Bamboo appeared first on SecurityWeek. Read More
-
Perimeter81 Vulnerability Disclosed After Botched Disclosure Process Eduard Kovacs
Cybersecurity firm Perimeter81 appears to have botched the responsible disclosure process for a privilege escalation vulnerability found in its macOS application. The post Perimeter81 Vulnerability Disclosed After Botched Disclosure Process appeared first on SecurityWeek. Read More
-
Industrial Organizations in Eastern Europe Targeted by Chinese Cyberspies Eduard Kovacs
The China-linked cyberspy group APT31 is believed to be behind a data-theft campaign targeting industrial organizations in Eastern Europe. The post Industrial Organizations in Eastern Europe Targeted by Chinese Cyberspies appeared first on SecurityWeek. Read More
-

New OpenSSH Vulnerability Exposes Linux Systems to Remote Command Injection [email protected] (The Hacker News)
Details have emerged about a now-patched flaw in OpenSSH that could be potentially exploited to run arbitrary commands remotely on compromised hosts under specific conditions. “This vulnerability allows a remote attacker to potentially execute arbitrary commands on vulnerable OpenSSH’s forwarded ssh-agent,” Saeed Abbasi, manager of vulnerability research at Qualys, said in an analysis last week.Read More
-

Banking Sector Targeted in Open-Source Software Supply Chain Attacks [email protected] (The Hacker News)
Cybersecurity researchers said they have discovered what they say is the first open-source software supply chain attacks specifically targeting the banking sector. “These attacks showcased advanced techniques, including targeting specific components in web assets of the victim bank by attaching malicious functionalities to it,” Checkmarx said in a report published last week. “The attackersRead More
-

Apple Threatens to Pull iMessage and FaceTime from U.K. Amid Surveillance Demands [email protected] (The Hacker News)
Apple has warned that it would rather stop offering iMessage and FaceTime services in the U.K. than bowing down to government pressure in response to new proposals that seek to expand digital surveillance powers available to state intelligence agencies. The development, first reported by BBC News, makes the iPhone maker the latest to join the chorus of…
-
JumpCloud Supply-Chain Attack
What is JumpCloud? JumpCloud is a U.S. based IT service provider that offers central access control and device management centralized user, device and application management for enterprises. What is the Attack? According to the advisory published by JumpCloud, an unnamed nation-state threat actor compromised the company’s systems through a spear-phishing attack in late June 2023.…
-
Active Exploitation of WooCommerce Payments Improper Authentication Vulnerability (CVE-2023-28121)
What is WooCommerce Payments? WooCommerce Payments is a popular e-commerce payment plugin for WordPress designed for small to large-sized online merchants using WordPress. According to Woo, the plugin has over 600,000 active installations. What is the Attack? CVE-2023-28121 is an authentication bypass vulnerability affecting the WooCommerce Payments plugin version 4.8.0 through 5.6.1. Successful exploitation of…
-
Microsoft Cloud Hack Exposed More than Exchange, Outlook Emails Ryan Naraine
Cloud security researcher warns that stolen Microsoft signing key was more powerful and not limited to Outlook.com and Exchange Online. The post Microsoft Cloud Hack Exposed More than Exchange, Outlook Emails appeared first on SecurityWeek. Read More
-

Azure AD Token Forging Technique in Microsoft Attack Extends Beyond Outlook, Wiz Reports [email protected] (The Hacker News)
The recent attack against Microsoft’s email infrastructure by a Chinese nation-state actor referred to as Storm-0558 is said to have a broader scope than previously thought. According to cloud security company Wiz, the inactive Microsoft account (MSA) consumer signing key used to forge Azure Active Directory (Azure AD or AAD) tokens to gain illicit access to Outlook…
