Cyber News - Page 11

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
data leak

Daixin Team Hackers Leak Data of 5 Million AirAsia Passengers and Employees

Earlier this month, on November 11 and 12, AirAsia Group fell victim to a ransomware attack carried out by a cybercrime group known as Daixin Team. Related Story: Malware Statistics 2022: Ransomware Continues to Be the Top Threat Daixin Team…

CYBER NEWS
Phishing Kit Uses Novel URI Fragmentation Technique in Pre-Holiday Campaigns

Phishing Kit Uses Novel URI Fragmentation Technique in Pre-Holiday Campaigns

Phishing continues to be a highly dangerous online threat, as threat actors are persistent in improving their methods. One of the latest successful phishing campaigns was recently detected by Akamai Security Research. The team “has observed a new and highly…

CYBER NEWS
Vulnerability in Spotify's Backstage

Spotify’s Backstage Vulnerable to Critical Remote Code Execution

A severe security vulnerability in Backstage, a CNCF-incubated, open-source project by Spotify, has been disclosed recently. The vulnerability could allow remote code execution attacks thanks to another issue in a third-party module. This issue, known as CVE-2022-36067, is a critical…

CYBER NEWS
blackhat-seo-sensorstechforum-com

15,000 WordPress Sites Affected by a Blackhat SEO Campaign

A new malicious campaign against WordPress websites has been detected. Malware Campaign against WordPress Sites: 15,000 Sites Affected Security researchers have detected “a surge in WordPress malware redirecting website visitors to fake Q&A sites.” The campaign is an example of…

CYBER NEWS
patch tuesday keyboard

November 2022 Patch Tuesday Fixes 6 Exploited Zero-Days (CVE-2022-41128)

November 2022 Patch Tuesday: What Has Been Fixed? November 2022 Patch Tuesday is a fact, addressing a total of 68 security vulnerabilities. The release contains fixes for a large number of Microsoft products, including: .NET Framework AMD CPU Branch Azure…

CYBER NEWS
Severe ConnectWise Vulnerability Creates Supply Chain Risks

Severe ConnectWise Vulnerability Creates Supply Chain Risks

A new severe security vulnerability in IT service management software platform ConnectWise has been reported. The vulnerability affects the company’s Recover and R1Soft Server Backup Manager (SBM). The vulnerability has been described as “Improper Neutralization of Special Elements in Output…

CYBER NEWS
CVE-2022-3723: Severe Vulnerability in Google Chrome

CVE-2022-3723: Severe Vulnerability in Google Chrome

What Is CVE-2022-3723? Google rolled out a security fix for a high severity vulnerability in its Chrome browser. CVE-2022-3723 is a type confusion issue in V8 JavaScript engine which was reported by Jan Vojtěšek, Milánek, and Przemek Gmerek of Avast.…

CYBER NEWS
Alert CVE-2021-39144: Critical Flaw in VMware Cloud Foundation

CVE-2021-39144: Critical Flaw in VMware Cloud Foundation

VMware just fixed a privately reported remote code execution vulnerability in its Cloud Foundation product. Known under the CVE-2021-39144 identifier, the vulnerability has a critical severity score of 9.8 out of 10. Fortunately, updates are already available for the affected…

CYBER NEWS
CVE-2022-42827 iOS Zero-Day Exploited in the Wild Alert Sign

CVE-2022-42827: iOS Zero-Day Exploited in the Wild

Apple recently released updates to fix a zero-day, known as CVE-2022-42827, in iOS and iPadOS. According to the company, the vulnerability, which was reported anonymously, has been exploited in the wild. CVE-2022-42827 in Detail The vulnerability is an out-of-bounds write…

CYBER NEWS
ALCHIMIST Attack Framework-sensorstechforum

New Alchimist Attack Framework Targets macOS, Windows, and Linux

A new malicious framework has been discovered, featuring a command and control server and a new malware known as Insekt. Alchimist Framework Technical Overview Called Alchimist, the framework has a web interface written in Simplified Chinese and implemented in GoLang,…

CYBER NEWS
Modified YoWhatsApp Drops Triada Trojan on Android Devices-sensorstechforum

Modified YoWhatsApp Drops Triada Trojan on Android Devices

Security researchers discovered a modified WhatsApp build, YoWhatsApp version 2.22.11.75 which hides a malicious module detected as Trojan.AndroidOS.Triada.eq (Triada trojan). YoWhatsApp Hides a Malicious Module According to Kaspersky’s Secure List, the module decrypted and launched the trojan’s main payload. The…

CYBER NEWS
hand holding a zero sign

Microsoft Fixes Dangerous Zero-Day (CVE-2022-41033)

What has been patched in October 2022 Patch Tuesday? Microsoft has issued patches for 85 vulnerabilities, including one zero-day. Unfortunately, the so-called ProxyNotShell flaws (CVE-2022-41040 and CVE-2022-41082), have not been patched yet, and affected parties should follow Microsoft’s mitigation recommendations.…

CYBER NEWS
fake ransomware pushed on adult websites

Adult Websites Push a Fake Ransomware in Disguise

Security researchers detected a number of malicious adult websites that push a fake ransomware, which in reality is a data wiper. Adult Websites Pushing a Fake Ransomware Instead of encrypting the victim’s data, the ransomware acts as a wiper, attempting…

CYBER NEWS
LilithBot Malware New Addition to the Eternity Project Threat Actor - sensorstechforum

LilithBot Malware: New Addition to the Eternity Project Threat Actor

Security researchers have detailed a new, multi-functional malware. Called LilithBot, the malware is associated with the Eternity Project threat group which has been active since at least January 2022. Another Addition to the Eternity Project’s Malware Arsenal The Eternity threat…

CYBER NEWS
ProxyNotShell Zero-Day Mitigations Can Be Bypassed [CVE-2022-41040]

ProxyNotShell Zero-Day Mitigations Can Be Bypassed [CVE-2022-41040]

Two new zero-day vulnerabilities in Microsoft Exchange were recently reported by Microsoft and GTSC researchers. The two vulnerabilities, identified as CVE-2022-41040 and CVE-2022-41082, are known collectively as the ProxyNotShell exploit. CVE-2022-41040 is a server-side request forgery issue which can be…

CYBER NEWS
pos-malware-credit-card-sensorstechforum

Prilex PoS Malware Is More Evolved and Dangerous than Ever

The Prilex malware is back once again in three new versions. The malware has slowly been evolving from ATM-focused towards modular point-of-sale (PoS) malware. The Brazilian threat actor behind it has carried out “one of the largest attacks on ATMs…

CYBER NEWS
NullMixer Dropper Leads to an Infection Chain of Numerous Malware Families

NullMixer Dropper Leads to an Infection Chain of Numerous Malware Families

We’re in the season of aggressive malware campaigns, evident by the increased number of attacks detected and analyzed by security researchers. One specific type of malware is especially important to carrying out successful distribution campaigns – the dropper. NullMixer is…

CYBER NEWS
Emotet Malware Activity 2022 - sensorstechforum

Emotet Malware Activity 2022: 1,267,598 Infections Detected Worldwide

The Emotet malware is once again making the titles. According to a new AdvIntel report, so far in 2022, a total of 1,267,598 Emotet infections have been detected worldwide, with significant peaks between February and March, and June and July.…

CYBER NEWS
CVE-2022-32917-apple-zero-day-sensorstechforum

CVE-2022-32917: Actively Exploited Zero-Day in macOS and iOS

This week Apple released an emergency update to address a new zero-day vulnerability that affects macOS and iOS. CVE-2022-32917 Zero-Day: Overview Reports indicate that the zero-day has already been exploited in the wild. Tracked as CVE-2022-32917 and reported anonymously, the…

CYBER NEWS
shikitega linux malware

New Shikitega Linux Malware Achieves Persistence, Drops XMRig Miner

There’s a new dangerous Linux malware circling the web. Dubbed Shikitega, the malware has been infecting both Linux computers and IoT devices with additional payloads. How Does the Shikitega Malware Operate to Infect a Linux System? Discovered by T&T Alien…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree