25 Oct European govt email servers hacked using Roundcube zero-day The Winter Vivern Russian hacking group has been exploiting a Roundcube Webmail zero-day since at least October 11 to attack European government entities and think tanks. […]
25 Oct VMware fixes critical code execution flaw in vCenter Server VMware issued security updates to fix a critical vCenter Server vulnerability that can be exploited to gain remote code execution attacks on vulnerable servers. […]
24 Oct Decentralized Matrix messaging network says it has 115M users The team behind the Matrix open standard and real-time communication protocol has announced the release of its second major version, bringing end-to-end encryption to group VoIP, faster loading times, and more. […]
24 Oct ASVEL basketball team confirms data breach after ransomware attack French professional basketball team LDLC ASVEL (ASVEL) has confirmed that data was stolen after the NoEscape ransomware gang claimed to have attacked the club. […]
24 Oct VMware warns admins of public exploit for vRealize RCE flaw VMware warned customers on Monday that proof-of-concept (PoC) exploit code is now available for an authentication bypass flaw in vRealize Log Insight (now known as VMware Aria Operations for Logs). […]
24 Oct September was a record month for ransomware attacks in 2023 Ransomware activity in September reached unprecedented levels following a relative lull in August that was still way above regular standards for summer months. […]
23 Oct 1Password discloses security incident linked to Okta breach 1Password, a popular password management platform used by over 100,000 businesses, suffered a security incident after hackers gained access to its Okta ID management tenant. […]
23 Oct US energy firm shares how Akira ransomware hacked its systems In a rare display of transparency, US energy services firm BHI Energy details how the Akira ransomware operation breached their networks and stole the data during the attack. […]
23 Oct Spain arrests 34 cybercriminals who stole data of 4 million people The Spanish National Police have dismantled a cybercriminal organization that carried out a variety of computer scams to steal and monetize the data of over four million people. […]
23 Oct Cisco patches IOS XE zero-days used to hack over 50,000 devices Cisco has addressed the two vulnerabilities (CVE-2023-20198 and CVE-2023-20273) that hackers exploited to compromise tens of thousands of IOS XE devices over the past week. […]