North Korean hackers exploit Chromium zero-day vulnerability
In the ever-evolving landscape of cybersecurity, the Chromium-based web browsers, such as Google Chrome and Microsoft Edge, have become prime targets for malicious actors. Recently, Microsoft cyber analysts...
Zero-day vulnerability CVE-2024-7971 and the threat posed by Citrine Sleet
Recent findings by Microsoft have shed light on a significant cybersecurity threat emerging from North Korea. The discovery of a zero-day vulnerability in the Chromium browser, labeled CVE-2024-7971,...
Hacktivist group exploits WinRAR vulnerability to launch attacks
The hacktivist group Head Mare has made headlines for exploiting a vulnerability in WinRAR to infiltrate and encrypt systems across both Windows and Linux platforms. Active since the...
A critical vulnerability in Mirai botnet: remote DoS exploit discovered
Recent investigations into the Mirai botnet have unveiled a significant remote denial-of-service (DoS) exploit, identified as CVE-2024-45163. This vulnerability was discovered within the source code of the Mirai...
E-commerce vulnerabilities exposed: the Magento skimmer incident
A recent cyberattack targeting Magento, a widely used e-commerce platform, has raised significant concerns within the cybersecurity community. Hackers have successfully injected a malicious skimmer into Magento stores,...
Emergence of PG_MEM malware targeting PostgreSQL databases
Aqua Nautilus researchers have uncovered a dangerous new malware strain named PG_MEM, specifically designed to exploit the PostgreSQL database management system for illicit cryptocurrency mining. The attack begins...
Vulnerabilities in Google’s Quick Share could lead to remote code execution
Recent findings have spotlighted significant security vulnerabilities in Google’s Quick Share, a file-sharing tool that works across Android, Windows, and Chrome OS devices. Identified as “QuickShell” by researchers...
Critical zero-day vulnerability in Microsoft Office: CVE-2024-38200
On August 8th, Microsoft revealed a significant zero-day vulnerability, tracked as CVE-2024-38200, affecting multiple versions of its Office suite with a CVSS score of 7.5. This information disclosure...