Home > Milena Dimitrova

Author Archive: Milena Dimitrova - Page 97

An inspired writer and content manager who has been with SensorsTechForum since the project started. A professional with 10+ years of experience in creating engaging content. Focused on user privacy and malware development, she strongly believes in a world where cybersecurity plays a central role. If common sense makes no sense, she will be there to take notes. Those notes may later turn into articles! Follow Milena @Milenyim

CYBER NEWS
vulnerability sign

CVE-2020-17049: Kerberos Security Feature Bypass Now Has Proof-of-Concept Code

CVE-2020-17049 is a Kerberos security feature bypass vulnerability that has now been weaponized by a proof-of-concept exploit code. The PoC code displays a new attack technique that can enable threat actors to access network-connected services. Such an attack can have…

CYBER NEWS
online gamers playing

CVE-2020-6016: Critical Flaws in Valve’s Steam Core Networking Library

Security researchers reported several critical flaws in a core networking library that powers Valve’s online gaming. The flaws could have enabled threat actors to crash games and gain control over third-party game servers remotely. Check Point discovered the vulnerabilities. First…

CYBER NEWS

FireEye Got Hacked in a Highly Tailored APT Attack, Red Team Tools Stolen

There is hardly a company that cannot be hacked, cybersecurity ones included. Moreover, even one of the most prominent cybersecurity firms in the world is susceptible to hacking. A state-sponsored actor recently targeted FireEye in a highly sophisticated attack that…

CYBER NEWS
hacker window obfuscation-as-a-service

New Obfuscation-as-a-Service Platform Offers Detection Evasion for Android

Security researchers reported that a new malicious service is enabling cybercriminals to improve their detection evasion mechanisms. Called obfuscation-as-a-service, the service shows how “robust the cybercriminal economy is,” as pointed out by DarkReading contributing author Ericka Chickowski. New obfuscation-as-a-service platform…

CYBER NEWS

COVID-19 Vaccine Supply Cold Chain Hit by Cybercriminals

The latest target of cybercriminals is the international vaccine supply chain, IBM says. The researchers tracked a malicious campaign that targeted the delivery cold chain needed to keep COVID-19 vaccines at the right temperature during transportation. Since the attacks are…

CYBER NEWS

Patched Google Play Core Library Flaw Still Puts High-Profile Android Apps At Risk

A severe vulnerability for the Google Play Core Library was reported in Late August. Known as CVE-2020-8913, the flaw endangers many widely-used Android Apps such as Grindr, Cisco Teams, Microsoft Edge, Booking.com, Viber, OkCupid. New Check Point research reveals that…

CYBER NEWS
facial recognition during covid-19 pandemic

How Are Facial Recognition Algorithms Doing During the Covid-19 Pandemic?

Facial recognition during a coronavirus pandemic when most people are wearing masks is a hot topic in security. A new NIST (National Institute of Standards and Technology) study of face recognition technology created after the Covid-19 pandemic started reveals significant…

CYBER NEWS
CVE-2020-9844 Wormable Wi-Fi Hack-sensorstechforum

CVE-2020-9844: Wormable Wi-Fi Hack Could Let Hackers Get Control of Your iPhone

CVE-2020-9844 is an iOS security vulnerability disclosed by Google Project Zero Ian Beer. The now-patched critical wormable bug could enable remote hackers to gain complete control of nearby vulnerable devices over Wi-Fi. According to the official CVE description, CVE-2020-9844 is…

CYBER NEWS
new macos backdoor malware

New macOS Backdoor Malware Linked to OceanLotus Hackers

Apple users are at risk of new malware targeting macOS. Discovered by Trend Micro researchers, the campaign is connected to the OceanLotus hacking group, most likely associated with the Vietnamese government. The hacking group targets foreign organizations in Vietnam, such…

CYBER NEWS
facebook dislike button dacebook fines millions of dollars

Facebook Fined $6M for Breaching the Privacy of Millions of Korean Users

Another fine for Facebook for breaching users’ privacy in South Korea Facebook has been penalized for sharing user data without consent in South Korea. The fine is approximately $6 million, following a report by the Personal Information Protection Commission (PIPC).…

CYBER NEWS
severe github vulnerability

Severe GitHub Vulnerability Could Cause Injection Attacks

GitHub has fixed a severe security vulnerability, reported by Google Project Zero researchers about three months ago. The flaw affected GitHub’s Actions feature, a developer workflow automation tool, and was discovered by Felix Wilhelm. In the researcher’s own words, the…

CYBER NEWS
new skimming malware called grelos

Online Shoppers, Beware! New Grelos Skimming Malware Hidden in Dozen of Sites

The winter holidays are around the corner, and so is new skimming malware. Cybercriminals recently released campaigns distributing the Grelos malware, a common Magecart variant. Analyzed by RiskIQ researchers, this strain comprises a rehash of the original code first spotted…

CYBER NEWS
jupyter infostealer malware

New Jupyter Infostealer Malware Targets Chrome and Firefox Browser Data

Security researchers spotted a new piece of infostealing malware called Jupyter. The malware is a .NET infostealer that primarily targets Chromium, Firefox, and Chrome browser data, say Morphisec researchers. Jupyter Infostealer According to the research, the malware demonstrates many capabilities…

CYBER NEWS
vulnerability in cisco products that could cause denial of service attacks

CVE-2020-26070: Severe Flaw in Cisco ASR Routers Could Cause DoS Attacks

CVE-2020-26070 is a high-severity flaw in Cisco ISO XR software. The bug could allow unauthenticated, remote hackers to take advantage of Cisco Aggregation Services Routers known as ASR. CVE-2020-26070 in Detail The vulnerability resides in Cisco ISO XR software. The…

CYBER NEWS

RansomEXX Ransomware Is Now Targeting Linux Systems

Kaspersky researchers recently discovered new ransomware targeting Linux systems. The team came across a 64-bit ELF executable designed to encrypt data on Linux-running machines. The analysis shows that the ransomware shares many similarities with a previously known family called RansomEXX.…

CYBER NEWS
ghimob banking trojan threatens android users

New Advanced Threat for Android Users: Ghimob Banking Trojan

Android devices are prone to attacks carried out by a new banking Trojan. Dubbed Ghimob, the malware can spy and harvest data from 153 Android applications in countries such as Brazil, Paraguay, Peru, Portugal, Germany, Angola, and Mozambique. Security research…

CYBER NEWS
hacking contest tianfu cup

Hackers at Tianfu Cup Hacking Contest Pwned Microsoft, Apple, Samsung

Have you heard of Tianfu Cup? Tianfu Cup is China’s biggest hacking competition that also happens to give away some of the highest reward payments. In this year’s edition, several tech-giants were “pwned”, including names like Microsoft, Samsung, VMWare, Google,…

CYBER NEWS

Pay2Key Ransomware: Entirely New Strain Set Against Israeli Companies

Security researchers recently detected a surge in attacks against Israeli companies. Some of the intrusions were carried out by well-known ransomware strains ReVil and Ryuk. However, a new ransomware was also spotted, the previously unknown Pay2Key. Previously Unknown Pay2Key Ransomware…

CYBER NEWS

Beware: 3 Serious Flaws in iOS, iPadOS, watchOS, and macOS (CVE-2020-27930)

Apple recently released security fixes for iOS, iPadOS, watchOS, and macOS, addressing vulnerabilities reported by Google’s Project Zero. According to the company’s security advisories, three of the flaws were reported by Project Zero and are being exploited in the wild.…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree