-
"SAP Patches High-Severity Vulnerabilities in Financial Consolidation, NetWeaver"Enterprise software maker SAP recently released ten new and two updated security notes as part of its June 2024 Security Patch Day.
-
"VSCode Extensions With Malicious Code Installed 229M Times"According to a group of researchers, Microsoft's Visual Studio Code (VSCode) extensions marketplace has malicious uploads and poor security.
-
"Threat Actor Breaches Snowflake Customers, Victims Extorted"According to Mandiant, a cyber threat actor is suspected of stealing a large amount of customer data from the data warehousing platform Snowflake.
-
"Discovery Highlights 'Critical Oversight' in Perceived Security of Wireless Networks"A team of researchers led by Rice University's Edward Knightly discovered an eavesdropping security vulnerability in high-frequency and high-speed wireless backhaul links.
-
"China-Linked ValleyRAT Malware Resurfaces with Advanced Data Theft Tactics"Researchers have discovered a new campaign spreading an updated version of the "ValleyRAT" malware. According to Zscaler ThreatLabz, the latest version includes screenshot capturing, process filtering, Windows event log clearing, and more.
-
"TellYouThePass Ransomware Exploits Recent PHP RCE Flaw to Breach Servers"The "TellYouThePass" ransomware group has been using PHP's recently patched Remote Code Execution (RCE) vulnerability to deliver web shells and execute the encryptor payload.
-
"Multiple Vulnerabilities Plague Discontinued Netgear WNR614 Routers"Redfox Security warns that discontinued Netgear WNR614 routers contain vulnerabilities that enable attackers to bypass authentication, intercept communications, and steal credentials.
-
"Apple Patches Vision Pro Vulnerability Used in Possibly First Ever Spatial Computing Hack"Apple recently updated visionOS, the operating system powering its Vision Pro virtual reality headset, to version 1.2, which addresses several vulnerabilities, including what may be the first security flaw that is specific to this product.
-
"Arm Warns of Exploited Kernel Driver Vulnerability"British semiconductor giant Arm has recently warned customers about a memory safety bug in Mali GPU kernel drivers that has been exploited in the wild.
-
"Gang of AI Bots Can Hack Websites With a 53% Success Rate, Researchers Show"Researchers from the University of Illinois Urbana-Champaign found that GPT-4-powered teams of bots can scan websites for zero-day vulnerabilities and attack them with 53 percent success.
-
"Cisco Finds 15 Vulnerabilities in AutomationDirect PLCs"Cisco's Talos research and threat intelligence unit found 15 vulnerabilities impacting AutomationDirect’s Productivity series Programmable Logic Controllers (PLCs). The vulnerabilities are all classified as being of high or critical severity.
-
"IoT Vulnerabilities Skyrocket, Becoming Key Entry Point for Attackers"According to Forescout's "The Riskiest Connected Devices in 2024" report, the number of Internet of Things (IoT) devices with vulnerabilities has increased by 136 percent.
News