Cyber News - Page 10

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
CVE-2022-39947- High Severity Flaw in Fortinet FortiADC-sensorstechforum

CVE-2022-39947: High Severity Flaw in Fortinet FortiADC

CVE-2022-39947 is a new, high severity security vulnerability in FortiADC product – an advanced application and database delivery controller from Fortinet. The vulnerability is a command injection issue in the product’s web interface, and has been rated 8.6 out of…

CYBER NEWS
CVE-2022-41654- Critical Vulnerability in Ghost CMS Newsletter Functionality-sensorstechforum-com

CVE-2022-41654: Critical Vulnerability in Ghost CMS Newsletter Functionality

Cisco Talos researchers recently discovered a critical vulnerability in Ghost CMS, a popular open source content management and newsletter subscription system, designated as CVE-2022-41654. The vulnerability has the potential to allow external users (newsletter subscribers) to create newsletters and add…

CYBER NEWS
ddos attack botnet exploits

Zerobot Malware Now Exploiting Apache Vulnerabilities (CVE-2021-42013)

The Zerobot botnet is making the headlines once again in a new campaign exploiting a range of security vulnerabilities. The malware spreads primarily through Internet of Things (IoT) and web application vulnerabilities, presenting a serious risk to organizations. Zerobot: What…

CYBER NEWS
CVE-2022-42821- macOS Gatekeeper Vulnerability Discovered by Microsoft - sensorstechforum

CVE-2022-42821: macOS Gatekeeper Vulnerability Discovered by Microsoft

A new dangerous vulnerability has been discovered in macOS. The vulnerability, tracked as CVE-2022-42821, could allow a malicious actor to gain full control of a macOS system. CVE-2022-42821: What Is Known So Far? Microsoft recently discovered a major security vulnerability…

CYBER NEWS
CVE-2022-38023 - samba - vulnerabilities - sensorstechforum

CVE-2022-38023: New Severe Samba Vulnerability Detected

Security researchers have identified four critical vulnerabilities in Samba, a popular open-source file sharing program. New Severe Vulnerabilities in Samba Allow RCE, Most Severe of Which Is CVE-2022-38023 The vulnerabilities, identified as CVE-2022-38023, CVE-2022-37966, CVE-2022-37967, and CVE-2022-45141, could allow an…

CYBER NEWS
Agenda Ransomware Written in Rust Targets Critical Infrastructure - sensorstechforum

Agenda Ransomware Written in Rust Targets Critical Infrastructure

According to cybersecurity reports, a new variant of the recently emerged Agenda ransomware has surfaced, written in the Rust programming language and specifically designed to target critical infrastructure. This new Agenda variant is concerning to security experts because of its…

CYBER NEWS
CVE-2022-44698, CVE-2022-44710- Microsoft Fixes 2 Zero-Days-sensorstechforum

CVE-2022-44698, CVE-2022-44710: Microsoft Fixes 2 Zero-Days

Another Microsoft Patch Tuesday has rolled out, fixing a total of 49 vulnerabilities. In terms of severity and impact, six of these vulnerabilities are critical, 40 important, and the rest – moderate. Microsoft December 2022 Patch Tuesday: Affected Products So,…

CYBER NEWS
CVE-2022-27518- Citrix ADC and Gateway Zero-Day Detected-sensorstechforum-com

CVE-2022-27518: Citrix ADC and Gateway Zero-Day Detected

CVE-2022-27518 is a newly detected Citrix vulnerability, currently exploited in attacks. The zero-day is located in Citrix ADC and Gateway, and could allow an unauthenticated remote threat actor to take over an exposed device. What Is Known about CVE-2022-27518? According…

CYBER NEWS
CVE-2022-42475 Severe Zero-Day in FortiOS SSL-VPN-sensorstechforum-com

CVE-2022-42475: Severe Zero-Day in FortiOS SSL-VPN

CVE-2022-42475 is a newly reported zero-day and a highly severe vulnerability in FortiOS that could trigger remote code execution. The vulnerability has been exploited in the wild, and affected organizations should apply the patch immediately. CVE-2022-42475: What Is Known So…

CYBER NEWS
New Royal Ransomware Is Targeting U.S. Healthcare Organizations-sensorstechforum

New Royal Ransomware Is Targeting U.S. Healthcare Organizations

The U.S. Department of Health and Human Services (HHS) has released a warning about ongoing Royal ransomware attacks that target healthcare organizations in the country. What Is Known about the Royal Ransomware Attacks? Royal ransomware is a lesser known ransomware…

CYBER NEWS
CVE-2022-20968- Flaw in Cisco IP Phone 7800, 8800 Series Firmware-sensorstechforum

CVE-2022-20968: Flaw in Cisco IP Phone 7800, 8800 Series Firmware

CVE-2022-20968 is a new high-severity security vulnerability in Cisco IP Phone 7800 and 8800 Series firmware. CVE-2022-20968 In Detail The CVE-2022-20968 vulnerability could be exploited by unauthenticated threat actors in remote code execution and denial-of-service attacks. The flaw is triggered…

CYBER NEWS
ermac-android-trojan-header-sensorstechforum

Zombinder Platform Binds Malware to Legitimate Android Apps

Zombinder is a new obfuscation service and criminal platform that allows threat actors to bind malware to legitimate Android applications. The service is cross-platform and targets both Windows and Android users. The platform was discovered by ThreatFabric researchers while analyzing…

CYBER NEWS

CVE-2022-40259: BMC&C Vulnerabilities Create Supply Chain Risk

Three new security vulnerabilities that create significant supply chain risk have been discovered. The vulnerabilities, which were discovered and reported by Eclypsium researchers, affect American Megatrends – MegaRAC Baseboard Management Controller (BMC) software: CVE-2022-40259 – Arbitrary Code Execution via Redfish…

CYBER NEWS
CVE-2022-4135 - Critical Vulnerability in Google Chrome 🕷

CVE-2022-4135 – Critical Vulnerability in Google Chrome 🕷

Google has effectively updated its browser to a newer version, fixing a critical vulnerability, called CVE-2022-4135. According to recent information, this vulnerability concerns your hardware and more specifically your GPU. CVE-2022-4135 Vulnerability Fixed In Google Chrome Version 107.0.5304.121 The most…

CYBER NEWS
ViperSoftX Stealer Drops Malicious Chrome Extension to Steal Crypto Funds-sensorstechforum

ViperSoftX Stealer Drops Malicious Chrome Extension to Steal Crypto Funds

A malicious campaign focused on stealing cryptocurrencies has been analyzed by security researchers in several consequent reports since 2020. ViperSoftX Cryptocurrency Infostealer: Technical Overview The malware, known as ViperSoftX, has been described initially by Fortinet, Colin Cowie, and now more…

CYBER NEWS
data leak

Daixin Team Hackers Leak Data of 5 Million AirAsia Passengers and Employees

Earlier this month, on November 11 and 12, AirAsia Group fell victim to a ransomware attack carried out by a cybercrime group known as Daixin Team. Related Story: Malware Statistics 2022: Ransomware Continues to Be the Top Threat Daixin Team…

CYBER NEWS
Phishing Kit Uses Novel URI Fragmentation Technique in Pre-Holiday Campaigns

Phishing Kit Uses Novel URI Fragmentation Technique in Pre-Holiday Campaigns

Phishing continues to be a highly dangerous online threat, as threat actors are persistent in improving their methods. One of the latest successful phishing campaigns was recently detected by Akamai Security Research. The team “has observed a new and highly…

CYBER NEWS
Vulnerability in Spotify's Backstage

Spotify’s Backstage Vulnerable to Critical Remote Code Execution

A severe security vulnerability in Backstage, a CNCF-incubated, open-source project by Spotify, has been disclosed recently. The vulnerability could allow remote code execution attacks thanks to another issue in a third-party module. This issue, known as CVE-2022-36067, is a critical…

CYBER NEWS
blackhat-seo-sensorstechforum-com

15,000 WordPress Sites Affected by a Blackhat SEO Campaign

A new malicious campaign against WordPress websites has been detected. Malware Campaign against WordPress Sites: 15,000 Sites Affected Security researchers have detected “a surge in WordPress malware redirecting website visitors to fake Q&A sites.” The campaign is an example of…

CYBER NEWS
patch tuesday keyboard

November 2022 Patch Tuesday Fixes 6 Exploited Zero-Days (CVE-2022-41128)

November 2022 Patch Tuesday: What Has Been Fixed? November 2022 Patch Tuesday is a fact, addressing a total of 68 security vulnerabilities. The release contains fixes for a large number of Microsoft products, including: .NET Framework AMD CPU Branch Azure…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree