02 Oct New BunnyLoader threat emerges as a feature-rich malware-as-a-service Security researchers discovered a new malware-as-a-service (MaaS) named ‘BunnyLoader’ advertised on multiple hacker forums as a fileless loader that can steal and replace the contents of the system clipboard. […]
02 Oct Ransomware gangs now exploiting critical TeamCity RCE flaw Ransomware gangs are now targeting a recently patched critical vulnerability in JetBrains’ TeamCity continuous integration and deployment server. […]
02 Oct Exploit available for critical WS_FTP bug exploited in attacks Over the weekend, security researchers released a proof-of-concept (PoC) exploit for a maximum severity remote code execution vulnerability in Progress Software’s WS_FTP Server file sharing platform. […]
01 Oct Amazon sends Mastercard, Google Play gift card order emails by mistake Amazon mistakenly sent out purchase confirmation emails for Hotels.com, Google Play, and Mastercard gift cards to customers, making many worried their accounts were compromised. […]
01 Oct Meet LostTrust ransomware — A likely rebrand of the MetaEncryptor gang The LostTrust ransomware operation is believed to be a rebrand of MetaEncryptor, utilizing almost identical data leak sites and encryptors. […]
01 Oct New Marvin attack revives 25-year-old decryption flaw in RSA A flaw related to the PKCS #1 v1.5 padding in SSL servers discovered in 1998 and believed to have been resolved still impacts several widely-used projects today. […]
30 Sep Cloudflare DDoS protections ironically bypassed using Cloudflare Cloudflare’s Firewall and DDoS prevention can be bypassed through a specific attack process that leverages logic flaws in cross-tenant security controls. […]
29 Sep The Week in Ransomware – September 29th 2023 – Dark Angels This week has been a busy ransomware week, with ransomware attacks having a massive impact on organizations and the fallout of the MOVEit breaches to be disclosed. […]
29 Sep Millions of Exim mail servers exposed to zero-day RCE attacks A critical zero-day vulnerability in all versions of Exim mail transfer agent (MTA) software can let unauthenticated attackers gain remote code execution (RCE) on Internet-exposed servers. […]
29 Sep Exploit released for Microsoft SharePoint Server auth bypass flaw Proof-of-concept exploit code has surfaced on GitHub for a critical authentication bypass vulnerability in Microsoft SharePoint Server, allowing privilege escalation. […]