β2024βs Cyber Battleground Unveiled: Escalating Ransomware Epidemic, the Evolution of Cyber Warfare Tactics and strategic use of AI in defense β Insights from Check Pointβs Latest Security Report
https://research.checkpoint.com/2024/2024s-cyber-battleground-unveiled-escalating-ransomware-epidemic-the-evolution-of-cyber-warfare-tactics-and-strategic-use-of-ai-in-defense-insights-from-check-points-latest-security-re/
https://research.checkpoint.com/2024/2024s-cyber-battleground-unveiled-escalating-ransomware-epidemic-the-evolution-of-cyber-warfare-tactics-and-strategic-use-of-ai-in-defense-insights-from-check-points-latest-security-re/
Check Point Research
2024's Cyber Battleground Unveiled: Escalating Ransomware Epidemic, the Evolution of Cyber Warfare Tactics and strategic use ofβ¦
Key Takeaways: Β· Rising Threats: Cybersecurity landscape faces an unprecedented surge in ransomware attacks, with 1 in every 10 organizations globally being targeted in 2023. Β· Evolution of Tactics: Adversaries exploit zero-day vulnerabilitiesβ¦
βPython Developers Beware: Attackers Sneak Malware into Popular Package Manager
https://securityonline.info/python-developers-beware-attackers-sneak-malware-into-popular-package-manager/
https://securityonline.info/python-developers-beware-attackers-sneak-malware-into-popular-package-manager/
Cybersecurity News
Python Developers Beware: Attackers Sneak Malware into Popular Package Manager
The attackers hid malicious code in packages designed to mimic legitimate ones, using a technique called DLL sideloading to slip past security defenses
βCVE-2024-1317: Critical WordPress Plugin Flaw Leaves Your Data Exposed
https://securityonline.info/cve-2024-1317-critical-wordpress-plugin-flaw-leaves-your-data-exposed/
https://securityonline.info/cve-2024-1317-critical-wordpress-plugin-flaw-leaves-your-data-exposed/
Cybersecurity News
CVE-2024-1317: Critical WordPress Plugin Flaw Leaves Your Data Exposed
Tracked as CVE-2024-1317 (CVSS 8.8), this flaw was pinpointed within all versions up to and including 4.4.2 of the Feedzy plugin
βConnectWise fixed critical flaws in ScreenConnect remote access tool
https://securityaffairs.com/159416/security/connectwise-fixed-critical-bugs.html
https://securityaffairs.com/159416/security/connectwise-fixed-critical-bugs.html
Security Affairs
ConnectWise fixed critical flaws in ScreenConnect remote access tool
ConnectWise fixed two critical vulnerabilities in its ScreenConnect remote desktop access product and urges customers to install patches asap
β[webapps] WEBIGniter v28.7.23 - Stored Cross Site Scripting (XSS)
https://www.exploit-db.com/exploits/51807
https://www.exploit-db.com/exploits/51807
Exploit Database
WEBIGniter v28.7.23 - Stored Cross Site Scripting (XSS)
WEBIGniter v28.7.23 - Stored Cross Site Scripting (XSS).. webapps exploit for PHP platform
βAuthorities Warns Of North Korean Attackers Stealing Military Technologies
https://cybersecuritynews.com/north-korean-attack-military-technologies/
https://cybersecuritynews.com/north-korean-attack-military-technologies/
Cyber Security News
Authorities Warns Of North Korean Attackers Stealing Military Technologies
Threat actors target military technologies to gain a strategic advantage, access classified information, and compromise national security.
π1
βUrgent Notice: Creates Online Shop Breach Exposes Customer Data
https://securityonline.info/urgent-notice-creates-online-shop-breach-exposes-customer-data/
https://securityonline.info/urgent-notice-creates-online-shop-breach-exposes-customer-data/
Cybersecurity News
Urgent Notice: Creates Online Shop Breach Exposes Customer Data
Creates, a popular online retailer of hair styling tools, has suffered a significant data breach that exposed credit card details
π1
βBiden executive order gives Coast Guard added authority over maritime cyber threats
https://cyberscoop.com/biden-executive-order-coast-guard-cyber/
https://cyberscoop.com/biden-executive-order-coast-guard-cyber/
CyberScoop
Biden signs executive order to give Coast Guard added authority over maritime cyber threats
National security officials have been sounding the alarm over a China-linked hacking group thatβs been targeting critical infrastructure.
βCVE-2024-21678: High-Severity Atlassian Confluence XSS β Act Now
https://securityonline.info/cve-2024-21678-high-severity-atlassian-confluence-xss-act-now/
https://securityonline.info/cve-2024-21678-high-severity-atlassian-confluence-xss-act-now/
Cybersecurity News
CVE-2024-21678: High-Severity Atlassian Confluence XSS β Act Now
Atlassian has released a security update addressing CVE-2024-21678 (CVSS 8.5), a high-severity stored cross-site scripting vulnerability
βSpeedyTest - Command-Line Tool For Measuring Internet Speed
http://www.kitploit.com/2024/02/speedytest-command-line-tool-for.html
http://www.kitploit.com/2024/02/speedytest-command-line-tool-for.html
KitPloit - PenTest & Hacking Tools
SpeedyTest - Command-Line Tool For Measuring Internet Speed
βCVE-2024-22243: Spring Framework Flaw Opens Doors to Redirects and SSRF Attacks
https://securityonline.info/cve-2024-22243-spring-framework-flaw-opens-doors-to-redirects-and-ssrf-attacks/
https://securityonline.info/cve-2024-22243-spring-framework-flaw-opens-doors-to-redirects-and-ssrf-attacks/
Cybersecurity News
CVE-2024-22243: Spring Framework Flaw Opens Doors to Redirects and SSRF Attacks
The Spring Framework, a cornerstone of countless enterprise Java applications, recently revealed a significant vulnerability (CVE-2024-22243)
βVMware Urges to Remove Enhanced EAP Plugin to Stop Auth & Session Hijack Attacks
https://gbhackers.com/vmware-urges-remove-eap-plugin/
https://gbhackers.com/vmware-urges-remove-eap-plugin/
GBHackers Security | #1 Globally Trusted Cyber Security News Platform
VMware Urges to Remove EAP Plugin to Stop Hijack Attacks
VMware has issued an urgent advisory to administrators to remove a deprecated authentication plugin vulnerable to severe security threats.
βMicrosoft Exchange flaw CVE-2024-21410 could impact up to 97,000 servers
https://securityaffairs.com/159424/hacking/28000-vulnerable-microsoft-exchange-servers.html
https://securityaffairs.com/159424/hacking/28000-vulnerable-microsoft-exchange-servers.html
Security Affairs
Microsoft Exchange flaw CVE-2024-21410 could impact up to 97,000 servers
Researchers from Shadowserver Foundation identified roughly 28,000 internet-facing Microsoft Exchange servers vulnerable to CVE-2024-21410.
βScreenConnect Security Flaw Let Attackers Bypass Authentication
https://cybersecuritynews.com/screenconnect-security-flaw/
https://cybersecuritynews.com/screenconnect-security-flaw/
Cyber Security News
ScreenConnect Security Flaw Let Attackers Bypass Authentication
ConnectWise has alerted users of its ScreenConnect remote access software to patch their systems immediately due to two severe vulnerabilities.
βSqliSniper β Enhancing Web Security By Detecting SQL Injection Vulnerabilities With Python
https://kalilinuxtutorials.com/sqlisniper/
https://kalilinuxtutorials.com/sqlisniper/
Kali Linux Tutorials
SqliSniper - Enhancing Web Security By Detecting SQL Injection
SqliSniper is a robust Python tool designed to detect time-based blind SQL injections in HTTP request headers.
βCloudMiner β Unleashing Free Computing Power Within Azure Automation
https://kalilinuxtutorials.com/cloudminer/
https://kalilinuxtutorials.com/cloudminer/
Kali Linux Tutorials
CloudMiner - Unleashing Free Computing Power Within Azure
CloudMiner represents a groundbreaking approach to leveraging Azure Automation service without incurring any costs.
βRussian-Linked Operation Texonto Targets Ukraine, Dissidents
https://securityonline.info/russian-linked-operation-texonto-targets-ukraine-dissidents/
https://securityonline.info/russian-linked-operation-texonto-targets-ukraine-dissidents/
Cybersecurity News
Russian-Linked Operation Texonto Targets Ukraine, Dissidents
Domains associated with Operation Texonto were found linked to potential influence operations aimed at Russian citizens
βUnderstanding GDPR and the Importance of Employee Training
https://latesthackingnews.com/2024/02/21/understanding-gdpr-and-the-importance-of-employee-training/
https://latesthackingnews.com/2024/02/21/understanding-gdpr-and-the-importance-of-employee-training/
LHN
Understanding GDPR and the Importance of Employee Training
The General Data Protection Regulation (GDPR) has significantly impacted how European businesses collect, store, use, and share personal data. Implemented in 2018, the GDPR has ushered in a new era of data privacy rights and
βSignal Messenger Introduces Usernames to Hide Phone Numbers
https://restoreprivacy.com/signal-messenger-introduces-usernames-to-hide-phone-numbers/
https://restoreprivacy.com/signal-messenger-introduces-usernames-to-hide-phone-numbers/
CyberInsider
Signal Messenger Introduces Usernames to Hide Phone Numbers
The Signal messenger app will soon begin rolling out usernames to replace phone numbers, making them the default option from now on.
βUS offers $15 million bounty for info on LockBit ransomware gang
https://www.bleepingcomputer.com/news/security/us-offers-15-million-bounty-for-info-on-lockbit-ransomware-gang/
https://www.bleepingcomputer.com/news/security/us-offers-15-million-bounty-for-info-on-lockbit-ransomware-gang/
BleepingComputer
US offers $15 million bounty for info on LockBit ransomware gang
The U.S. State Department is now also offering rewards of up to $15 million to anyone who can provide information about LockBit ransomware gang members and their associates.
βScreenConnect critical bug now under attack as exploit code emerges
https://www.bleepingcomputer.com/news/security/screenconnect-critical-bug-now-under-attack-as-exploit-code-emerges/
https://www.bleepingcomputer.com/news/security/screenconnect-critical-bug-now-under-attack-as-exploit-code-emerges/
BleepingComputer
ScreenConnect critical bug now under attack as exploit code emerges
Both technical details and proof-of-concept exploits are available for the two vulnerabilities ConnectWise disclosed earlier this week for ScreenConnect, its remote desktop and access software.