πŸ›‘ Cybersecurity & Privacy πŸ›‘ - News
26.2K subscribers
89.3K links
πŸ—ž The finest daily news on cybersecurity and privacy.

πŸ”” Daily releases.

πŸ’» Is your online life secure?

πŸ“© lalilolalo.dev@gmail.com
Download Telegram
πŸ–‹οΈ Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access πŸ–‹οΈ

Cisco has rolled out updates for a maximumseverity security flaw impacting Secure Workload that could allow an unauthenticated, remote attacker to access sensitive data. Tracked as CVE202620223 CVSS score 10.0, the vulnerability arises from insufficient validation and authentication when accessing REST API endpoints. "An attacker could exploit this vulnerability if they are able to send.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access πŸ–‹οΈ

Cisco has rolled out updates for a maximumseverity security flaw impacting Secure Workload that could allow an unauthenticated, remote attacker to access sensitive data. Tracked as CVE202620223 CVSS score 10.0, the vulnerability arises from insufficient validation and authentication when accessing REST API endpoints. "An attacker could exploit this vulnerability if they are able to send.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access πŸ–‹οΈ

Cisco has rolled out updates for a maximumseverity security flaw impacting Secure Workload that could allow an unauthenticated, remote attacker to access sensitive data. Tracked as CVE202620223 CVSS score 10.0, the vulnerability arises from insufficient validation and authentication when accessing REST API endpoints. "An attacker could exploit this vulnerability if they are able to send.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Cisco Patches CVSS 10.0 Secure Workload REST API Flaw Enabling Data Access πŸ–‹οΈ

Cisco has rolled out updates for a maximumseverity security flaw impacting Secure Workload that could allow an unauthenticated, remote attacker to access sensitive data. Tracked as CVE202620223 CVSS score 10.0, the vulnerability arises from insufficient validation and authentication when accessing REST API endpoints. "An attacker could exploit this vulnerability if they are able to send.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor πŸ–‹οΈ

Cybersecurity researchers have disclosed details of a new Linux malware dubbed Showboat that has been put to use in a campaign targeting a telecommunications provider in the Middle East since at least mid2022. "Showboat is a modular postexploitation framework designed for Linux systems, capable of spawning a remote shell, transferring files, and functioning as a SOCKS5 proxy," Lumen.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor πŸ–‹οΈ

Cybersecurity researchers have disclosed details of a new Linux malware dubbed Showboat that has been put to use in a campaign targeting a telecommunications provider in the Middle East since at least mid2022. "Showboat is a modular postexploitation framework designed for Linux systems, capable of spawning a remote shell, transferring files, and functioning as a SOCKS5 proxy," Lumen.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor πŸ–‹οΈ

Cybersecurity researchers have disclosed details of a new Linux malware dubbed Showboat that has been put to use in a campaign targeting a telecommunications provider in the Middle East since at least mid2022. "Showboat is a modular postexploitation framework designed for Linux systems, capable of spawning a remote shell, transferring files, and functioning as a SOCKS5 proxy," Lumen.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ CISA Adds Exploited Langflow and Trend Micro Apex One Vulnerabilities to KEV πŸ–‹οΈ

The U.S. Cybersecurity and Infrastructure Security Agency CISA on Thursday added two security flaws impacting Langflow and Trend Micro Apex One to its Known Exploited Vulnerabilities KEV catalog, citing evidence of active exploitation. The vulnerabilities in question are listed below CVE202534291 CVSS score 9.4 An origin validation error vulnerability in Langflow that could.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ–‹οΈ Showboat Linux Malware Hits Middle East Telecom with SOCKS5 Proxy Backdoor πŸ–‹οΈ

Cybersecurity researchers have disclosed details of a new Linux malware dubbed Showboat that has been put to use in a campaign targeting a telecommunications provider in the Middle East since at least mid2022. "Showboat is a modular postexploitation framework designed for Linux systems, capable of spawning a remote shell, transferring files, and functioning as a SOCKS5 proxy," Lumen.

πŸ“– Read more.

πŸ”— Via "The Hacker News"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” GitHub Breach Traced to Malicious 'Nx Console' VS Code Extension πŸ“”

A threat actor compromised an Nx developer and posed as a legitimate maintainer to publish a malicious extension on Visual Studio Marketplace.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” Cybercriminal VPN Dismantled in Europol Crackdown πŸ“”

First VPN, a service used by ransomware actors and fraudsters, was dismantled by Europol.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” GitHub Breach Traced to Malicious 'Nx Console' VS Code Extension πŸ“”

A threat actor compromised an Nx developer and posed as a legitimate maintainer to publish a malicious extension on Visual Studio Marketplace.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity
πŸ“” GitHub Breach Traced to Malicious 'Nx Console' VS Code Extension πŸ“”

A threat actor compromised an Nx developer and posed as a legitimate maintainer to publish a malicious extension on Visual Studio Marketplace.

πŸ“– Read more.

πŸ”— Via "Infosecurity Magazine"

----------
πŸ‘οΈ Seen on @cibsecurity