Cyber News - Page 27

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
CVE-2021-35211

CVE-2021-35211: SolarWinds Serv-U Zero-Day Vulnerability

There is a new security zero-day vulnerability (CVE-2021-35211) threatening SolarWinds, or more particularly, its Serv-U product line. The exploit was discovered and reported to SolawWinds by Microsoft. According to the official advisory, the newly disclosed zero-day “only affects affects Serv-U…

CYBER NEWS
Multiple Vulnerabilities in Philips Clinical Collaboration Platform Portal (CVE-2020-1938)-sensorstechforum

Multiple Vulnerabilities in Philips Clinical Collaboration Platform Portal (CVE-2020-1938)

Security researchers reported several vulnerabilities in Philips Clinical Collaboration Platform Portal. Vulnerabilities in Philips Clinical Collaboration Platform Portal The vulnerabilities, 15 in total, could be used to take control of medical devices. According to an official CISA advisory, the flaws…

CYBER NEWS
Four Vulnerabilities in Sage X3 ERP Platform CVE-2020-7387-sensorstechforum

Warning: Four Vulnerabilities in Sage X3 ERP Platform (CVE-2020-7387)

Security researchers just disclosed four vulnerabilities in the Sage X3 ERP platform (enterprise resource planning). One of the flaws is critical, with a score of 10 out of 10 on the CVSS scale. Furthermore, two of them could be chained…

CYBER NEWS
western digital zero-day

Serious RCE Vulnerability Threatens the Security of Western Digital Customers

Security researchers recently reported a vulnerability in Western Digital MyBook Live network storage drives. The vulnerability allowed remote attacker to wipe the drives “thanks to a bug in a product line the company stopped supporting in 2015, as well as…

CYBER NEWS
The Kaseya Ransomware Attack-sensorstechforum

CVE-2021-30116 Zero-Days Used by REvil in Kaseya Ransomware Attack

Last week, the REvil ransomware gang carried out an unprecedented supply chain ransomware attack against customers of Kaseya’s VSA product. Update July 6, 2021: Even though the REvil cyber gang claims to have infected 1 million systems running Kaseya services, federal…

CYBER NEWS
The Emergence of Diavol Ransomware-sensorstechforum

Diavol: The Emergence of a New Sophisticated Ransomware Family

A new ransomware family was just discovered by security researchers. Called Diavol, the new ransomware was uncovered at the beginning of June, when Fortinet prevented a ransomware attack targeting one of its customers. After successfully halting the attack, the researchers…

CYBER NEWS
Nameless Malware Steals 1.2 Terabytes of Personal Details from 3M Windows Users-sensorstechforum

Nameless Malware Steals 1.2 Terabytes of Personal Details from 3M Windows Users

Security researchers discovered a nameless malware campaign that stole 1.2 terabytes of personal information from 3.25 million Windows systems. As evident by screenshots the malware took, the campaign took place between 2018 and 2020, when a trojan sneaked into users’…

CYBER NEWS
How Microsoft discovered the Netgear firmware vulnerabilities-sensorstechforum

Microsoft Just Found Critical Firmware Vulnerabilities in Netgear Routers

A series of security flaws were recently discovered by Microsoft in Netgear routers. The flaws could lead to data leaks and full system takeovers. Fortunately, the vulnerabilities were patched prior to public disclosure. How Microsoft discovered the Netgear firmware vulnerabilities…

CYBER NEWS
CVE-2021-1675-sensorstechforum

CVE-2021-1675: Critical Windows Print Spooler Vulnerability

CVE-2021-1675 is a critical Windows vulnerability with an available proof-of-concept that could enable remote attackers execute code. The PoC code was shared on GitHub earlier this week, and taken down within a few hours. However, these few hours were enough…

CYBER NEWS
An Unpatched Vulnerability in Google Compute Engine-sensorstechforum

There’s an Unpatched Vulnerability in Google Compute Engine

There’s a vulnerability in Google’s Compute engine platform that attackers could exploit to obtain control of virtual machines over the network. The discovery comes from security researcher Imre Rad who published an analysis on GitHub. He reported about “an unpatched…

CYBER NEWS
700 Million LinkedIn Records Up for Sale on a Hacker Forum-sensorstechforum

Not Again: 700 Million LinkedIn Records Up for Sale on a Hacker Forum

The data of 700 million LinkedIn users has been compromised, according to a new report by Privacy Sharks. The researchers came across the data records on a popular underground forum where it was offered for sale. 700 Million LinkedIn Records…

CYBER NEWS
netfilter-rootkit-sensorstechforum

The Netfilter Rootkit: How Microsoft Signed a Malicious Driver

Microsoft recently document an intriguing cybersecurity accident involving a threat actor that distributed malicious drivers across gaming environments. The Netfilter Driver: a Threat to the Gaming Community Evidently, the threat actor submitted a specific driver called Netfilter, built by a…

CYBER NEWS
crackonosh-malware-sensorstechforum

Crackonosh Malware Uses Cracked Software and Disables System Defenses

Security researchers just reported the discovery of a new malware they called Crackonosh. The malware was uncovered by Avast researchers after they received reports from reddit users saying that their AV programs were missing from their systems. Crackonosh Malware in…

CYBER NEWS
CVE-2021-21998

CVE-2021-21998: Critical Bug in VMware’s Carbon Black App Control

Critical Vulnerability in VMware’s Carbon Black App Control There’s a vulnerability in VMware’s Carbon Black App Control management server. Rated 9.4 according to the CVSS scale, the severe flaw could grant threat actors with admin rights without any authentication. This…

CYBER NEWS
french connection ransomware attack-sensorstechforum

Fashion Brand French Connection (FCUK) Hit by Ransomware

French Connection (FCUK), a clothing company, is the latest victim of a ransomware attack linked to the REvil gang. The attackers seem to have found a vulnerability in the company’s back-end systems, which allowed them to grab internal data. Breached…

CYBER NEWS
Dell BIOSConnect Feature Vulnerable to RCE Attacks CVE-2021-21573-sensorstechforum

Dell BIOSConnect Feature Vulnerable to RCE Attacks (CVE-2021-21573)

Dell devices contain four high-severity security flaws that could allow remote attackers to carry out arbitrary code execution in the pre-boot environment of the devices. The vulnerabilities affect 30 million individual Dell endpoints, Eclypsium researchers discovered. The said vulnerabilities are…

CYBER NEWS
Unpatched RCE Bug Affects PlingStore, Linux Marketplaces-sensorstechforum

Unpatched RCE Bug Affects PlingStore, Linux Marketplaces

Researchers from Positive Security discovered an unpatched stored cross-site-scripting (XSS) flaw impacting Linux marketplaces. The vulnerability creates the possibility of unchecked, wormable supply-chain attacks. Affected are Pling-based marketplaces, such as AppImage Hub, Gnome-Look, KDE Discover App Store, Pling.com, and XFCE-Look.…

CYBER NEWS
CVE-2021-33515  dovecot vulnerability

CVE-2021-33515 Dovecot Vulnerability Could Allow Email Snooping

Security researchers discovered a vulnerability, CVE-2021-33515, in the underlying technology deployed by most email servers running the IMAP protocol (Internet Message Access Protocol). The vulnerability has been around for at least a year, allowing attackers to bypass TLS email protections…

CYBER NEWS
Tor Browser Version 10.0.18 Fixes User Tracking Vulnerability-sensorstechforum

Tor Browser Version 10.0.18 Fixes User Tracking Vulnerability

If you are using the Tor Browser, you should get the latest update immediately. Tor Browser 10.0.18 fixes a series of issues, one of which is a vulnerability that could allow sites to track users by fingerprinting their installed apps.…

CYBER NEWS
darkradiation-ransomware-linux-sensorstechforum

DarkRadiation Ransomware Targets Linux and Docker Containers

DarkRadiation is a new ransomware that targets Linux and Docker cloud containers. Coded in Bash, the ransomware targets specifically Red Hat/CentOS and Debian Linux distributions, according to Trend Micro’s research. Related: Previously Undetected RotaJakiro Malware Targets Linux X64 Systems For…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree