New Flaws in Microsoft macOS Apps Could Allow Hackers to Gain Unrestricted Access post, september 3, 2024februari 24, 2025 Eight vulnerabilities have been uncovered in Microsoft applications for macOS that an adversary could exploit to gain elevated privileges or access sensitive data by circumventing the operating system’s permissions-based model, which revolves around the Transparency, Consent, and Control (TCC) framework. “If successful, the adversary could gain any privileges already granted… Continue Reading
RansomHub Ransomware Group Targets 210 Victims Across Critical Sectors post, september 2, 2024september 3, 2024 Threat actors linked to the RansomHub ransomware group encrypted and exfiltrated data from at least 210 victims since its inception in February 2024, the U.S. government said. The victims span various sectors, including water and wastewater, information technology, government services and facilities, healthcare and public health, emergency services, food and agriculture, financial… Continue Reading
Google Fixes High-Severity Chrome Flaw Actively Exploited in the Wild post, augustus 22, 2024augustus 23, 2024 Google has rolled out security fixes to address a high-severity security flaw in its Chrome browser that it said has come under active exploitation in the wild. Tracked as CVE-2024-7971, the vulnerability has been described as a type confusion bug in the V8 JavaScript and WebAssembly engine. “Type confusion in V8… Continue Reading
Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group post, augustus 19, 2024februari 24, 2025 A newly patched security flaw in Microsoft Windows was exploited as a zero-day by Lazarus Group, a prolific state-sponsored actor affiliated with North Korea. The security vulnerability, tracked as CVE-2024-38193 (CVSS score: 7.8), has been described as a privilege escalation bug in the Windows Ancillary Function Driver (AFD.sys) for WinSock. “An attacker who… Continue Reading
Cybersecurity Agencies Warn of China-linked APT40’s Rapid Exploit Adaptation post, juli 9, 2024juli 3, 2025 Cybersecurity agencies from Australia, Canada, Germany, Japan, New Zealand, South Korea, the U.K., and the U.S. have released a joint advisory about a China-linked cyber espionage group called APT40, warning about its ability to co-opt exploits for newly disclosed security flaws within hours or days of public release. “APT40 has previously… Continue Reading
PoC Exploit Emerges for Critical RCE Bug in Ivanti Endpoint Manager post, juni 13, 2024juni 14, 2024 A new month, a new high-risk Ivanti bug for attackers to exploit — this time, an SQL injection issue in its centralized endpoint manager. Researchers have developed a proof-of-concept (PoC) exploit for a critical vulnerability in Ivanti Endpoint Manager that was recently disclosed — potentially setting the stage for mass… Continue Reading
Noorwegen adviseert af te stappen van SSLVPN post, mei 17, 2024 Het Noorse National Cyber Security Centre neemt een interessante stap: ze adviseren af te stappen van het gebruik van SSLVPN/WebVPN. De primaire reden is het grote aantal aanvallen op deze technologie over de afgelopen periode. Bleepingcomputer meldde dit gisteren. Continue Reading
Norway recommends replacing SSL VPN to prevent breaches post, mei 16, 2024mei 17, 2024 The Norwegian National Cyber Security Centre (NCSC) recommends replacing SSLVPN/WebVPN solutions with alternatives due to the repeated exploitation of related vulnerabilities in edge network devices to breach corporate networks. The organization recommends that the transition be completed by 2025, while organizations subject to the ‘Safety Act’ or those in critical infrastructure… Continue Reading
Germany points finger at Fancy Bear for widespread 2023 hacks, DDoS attacks post, mei 6, 2024juli 3, 2025 It was just around a year ago that a spate of allegedly Russian-orchestrated cyberattacks hit government agencies in Germany, and now German officials claim to know for a fact who did it: APT28, or Fancy Bear, a Russian threat actor linked to the GRU intelligence service. Continue Reading
Microsoft Outlook Flaw Exploited by Russia’s APT28 to Hack Czech, German Entities post, mei 4, 2024juli 3, 2025 Czechia and Germany on Friday revealed that they were the target of a long-term cyber espionage campaign conducted by the Russia-linked nation-state actor known as APT28, drawing condemnation from the European Union (E.U.), the North Atlantic Treaty Organization (NATO), the U.K., and the U.S. The Czech Republic’s Ministry of Foreign Affairs… Continue Reading