30 Aug VMware Aria vulnerable to critical SSH authentication bypass flaw VMware Aria Operations for Networks (formerly vRealize Network Insight) is vulnerable to a critical severity authentication bypass flaw that could allow remote attackers to bypass SSH authentication and access private endpoints. […]
29 Aug How the FBI nuked Qakbot malware from infected Windows PCs The FBI announced today the disruption of the Qakbot botnet in an international law enforcement operation that not only seized infrastructure but also uninstalled the malware from infected devices. […]
29 Aug DreamBus malware exploits RocketMQ flaw to infect servers A new version of the DreamBus botnet malware exploits a critical-severity remote code execution vulnerability in RocketMQ servers to infect devices. […]
29 Aug New Android MMRat malware uses Protobuf protocol to steal your data A novel Android banking malware named MMRat utilizes a rarely used communication method, protobuf data serialization, to more efficiently steal data from compromised devices. […]
29 Aug Qakbot botnet dismantled after infecting over 700,000 computers Qakbot, one of the largest and longest-running botnets to date, was taken down following a multinational law enforcement operation spearheaded by the FBI and known as Operation ‘Duck Hunt.’ […]
29 Aug Microsoft adds HSTS support to Exchange Server 2016 and 2019 Microsoft announced today that Exchange Server 2016 and 2019 now come with support for HTTP Strict Transport Security (also known as HSTS). […]
28 Aug Attacks on Citrix NetScaler systems linked to ransomware actor A threat actor believed to be tied to the FIN8 hacking group exploits the CVE-2023-3519 remote code execution flaw to compromise unpatched Citrix NetScaler systems in domain-wide attacks. […]
28 Aug MalDoc in PDFs: Hiding malicious Word docs in PDF files Japan’s computer emergency response team (JPCERT) is sharing a new ‘MalDoc in PDF’ attack detected in July 2023 that bypasses detection by embedding malicious Word files into PDFs. […]
28 Aug Microsoft will enable Exchange Extended Protection by default this fall Microsoft announced today that Windows Extended Protection will be enabled by default on servers running Exchange Server 2019 starting this fall after installing the 2023 H2 Cumulative Update (CU14). […]
28 Aug Spain warns of LockBit Locker ransomware phishing attacks The National Police of Spain is warning of an ongoing ‘LockBit Locker’ ransomware campaign targeting architecture companies in the country through phishing emails. […]