Category: Uncategorized
-
Tampa General Hospital Says Patient Information Stolen in Ransomware Attack Ionut Arghire
Tampa General Hospital has started informing patients that their personal information was stolen in a ransomware attack. The post Tampa General Hospital Says Patient Information Stolen in Ransomware Attack appeared first on SecurityWeek. Read More
-
Citrix Zero-Day Exploited Against Critical Infrastructure Organization Eduard Kovacs
CISA says the new Citrix zero day vulnerability tracked as CVE-2023-3519 has been exploited against a critical infrastructure organization. The post Citrix Zero-Day Exploited Against Critical Infrastructure Organization appeared first on SecurityWeek. Read More
-

DDoS Botnets Hijacking Zyxel Devices to Launch Devastating Attacks [email protected] (The Hacker News)
Several distributed denial-of-service (DDoS) botnets have been observed exploiting a critical flaw in Zyxel devices that came to light in April 2023 to gain remote control of vulnerable systems. “Through the capture of exploit traffic, the attacker’s IP address was identified, and it was determined that the attacks were occurring in multiple regions, including Central…
-

Citrix NetScaler ADC and Gateway Devices Under Attack: CISA Urges Immediate Action [email protected] (The Hacker News)
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an advisory on Thursday warning that the newly disclosed critical security flaw in Citrix NetScaler Application Delivery Controller (ADC) and Gateway devices is being abused to drop web shells on vulnerable systems. “In June 2023, threat actors exploited this vulnerability as a zero-day to drop a…
-
New AMI BMC Flaws Allowing Takeover and Physical Damage Could Impact Millions of Devices Eduard Kovacs
Two new serious vulnerabilities in AMI BMC, which is used by millions of devices, can allow attackers to take control of systems and cause physical damage. The post New AMI BMC Flaws Allowing Takeover and Physical Damage Could Impact Millions of Devices appeared first on SecurityWeek. Read More
-

Critical Flaws in AMI MegaRAC BMC Software Expose Servers to Remote Attacks [email protected] (The Hacker News)
Two more security flaws have been disclosed in AMI MegaRAC Baseboard Management Controller (BMC) software that, if successfully exploited, could allow threat actors to remotely commandeer vulnerable servers and deploy malware. “These new vulnerabilities range in severity from High to Critical, including unauthenticated remote code execution and unauthorized device access with superuserRead More
-

Mallox Ransomware Exploits Weak MS-SQL Servers to Breach Networks [email protected] (The Hacker News)
Mallox ransomware activities in 2023 have witnessed a 174% increase when compared to the previous year, new findings from Palo Alto Networks Unit 42 reveal. “Mallox ransomware, like many other ransomware threat actors, follows the double extortion trend: stealing data before encrypting an organization’s files, and then threatening to publish the stolen data on a…
-

Apache OpenMeetings Web Conferencing Tool Exposed to Critical Vulnerabilities [email protected] (The Hacker News)
Multiple security flaws have been disclosed in Apache OpenMeetings, a web conferencing solution, that could be potentially exploited by malicious actors to seize control of admin accounts and run malicious code on susceptible servers. “Attackers can bring the application into an unexpected state, which allows them to take over any user account, including the admin…
-
API keys: Weaknesses and security best practices
Post ContentRead More
-
JumpCloud Cyberattack Linked to North Korean Hackers Ionut Arghire
SentinelOne has linked the recent JumpCloud cyberattack to North Korean hackers, based on the published IoCs. The post JumpCloud Cyberattack Linked to North Korean Hackers appeared first on SecurityWeek. Read More
