22 Mar Critical code execution vulnerability fixed in Adobe ColdFusion Adobe has released out-of-band security updates to address a critical vulnerability impacting ColdFusion versions 2021, 2016, and 2018. […]
22 Mar Energy giant Shell discloses data breach after Accellion hack Energy giant Shell has disclosed a data breach after attackers compromised the company’s secure file-sharing system powered by Accellion’s File Transfer Appliance (FTA). […]
22 Mar Microsoft Exchange servers now targeted by BlackKingdom ransomware Another ransomware operation known as ‘BlackKingdom’ is exploiting the Microsoft Exchange Server ProxyLogon vulnerabilities to encrypt servers. […]
21 Mar DDoS booters now abuse DTLS servers to amplify attacks DDoS-for-hire services are now actively abusing misconfigured or out-of-date Datagram Transport Layer Security (D/TLS) servers to amplify Distributed Denial of Service (DDoS) attacks. […]
20 Mar Hacking group used 11 zero-days to attack Windows, iOS, Android users Project Zero, Google’s zero-day bug-hunting team, discovered a group of hackers that used 11 zero-days in attacks targeting Windows, iOS, and Android users within a single year. […]
19 Mar The Week in Ransomware – March 19th 2021 – Highest ransom ever! While the beginning of this week was fairly quiet, it definitely ended with a bang as news came out of the largest ransom demand yet. […]
19 Mar Critical F5 BIG-IP vulnerability now targeted in ongoing attacks Cybersecurity firm NCC Group said on Thursday that it detected successful in the wild exploitation of a recently patched critical vulnerability in F5 BIG-IP and BIG-IQ networking devices. […]
19 Mar REvil ransomware says they hit Acer, Acer reports “abnormal situations” The REvil ransomware operation claims to have stolen unencrypted data after hacking electronics and computer giant Acer. […]
19 Mar FBI warns of BEC attacks increasingly targeting US govt orgs The Federal Bureau of Investigation (FBI) is warning US private sector companies about an increase in business email compromise (BEC) attacks targeting state, local, tribal, and territorial (SLTT) government entities. […]
19 Mar Russian pleads guilty to Tesla hacking and extortion attempt Russian national Egor Igorevich Kriuchkov has pleaded guilty to recruiting a Tesla employee to plant malware designed to steal data within the network of Tesla’s Nevada Gigafactory. […]