Zero-day vulnerability in GeoVision devices exploited by a botnet
The vulnerability, tracked as CVE-2024-11120, is a critical OS command injection flaw.
The vulnerability, tracked as CVE-2024-11120, is a critical OS command injection flaw.
The company developed multiple zero-day exploits, including a previously unknown vector named Erised.
The attack leverages a modular post-exploitation framework called DEEPDATAю
In brief: PAN-OS, D-Link RCE flaws exploited in the wild, the US confirms Chinese hackers stole data from multiple telecom firms, and more.
The attack involved a phishing email from a hacked Ukrainian government server, aimed at government personnel and academic institutions.
The indictment links Moucka and Binns to breaches involving massive amounts of customer data stolen from Snowflake cloud accounts.
ShrinkLocker utilizes Microsoft’s BitLocker for encryption instead of custom encryption methods.
The flaws allow attackers to either elevate privileges or gain access to sensitive user data.
In 2023, ten of the fifteen most exploited vulnerabilities were initially zero-days.
The adversary has compromised a significant number of routers over the past month, primarily outdated Cisco and Netgear models.
Showing elements 1071 - 1080