• Trends
  • Topics
  • Nodes
Search for keywords, #hashtags, $sites, add a dash to exclude, e.g. -$theonion.com

From cyble.com

SolarWinds Releases Patches For High-Severity

3 3

SolarWinds releases patches for high-severity vulnerabilities. Immediate action is advised to secure affected products and protect IT infrastructure.

#infosec #cybersecurity #vulnerability #solarwinds

19h ago

From cyble.com

GitHub Alerts On Critical Vulnerability In Self-Hosted Environments

3 3

GitHub Warns Of Critical Vulnerabilities In GitHub Enterprise Server (GHES) That Require Immediate Patching To Secure Affected Versions

#infosec #cybersecurity #vulnerability #github

22h ago

From cyble.com

CISA Urgent Advisory: Vulnerabilities In Multiple Products

0 2

CISA warns of critical vulnerabilities in products like SolarWinds and Firefox, urging immediate action to mitigate risks and enhance cybersecurity.

4h ago

From cyble.com

Active Exploitation Of SAML Vulnerability CVE-2024-45409 Detected By Cyble Sensors

0 2

Cyble Global Sensor Intelligence Network Detects The Active Exploitation Of CVE-2024-45409, A Critical SAML Vulnerability Affecting GitLab, Which Can Potentially Bypass Critical Security Checks.

19h ago

From cyble.com

Weekly IT Vulnerability Report: Urgent Fixes For Ivanti, MS

0 2

Discover Cyble's weekly IT Vulnerability Report, highlighting urgent fixes for Ivanti, Microsoft, and more. Stay ahead of dark web exploits!

20h ago

From cyble.com

Hidden In Plain Sight: How ErrorFather Deploys Cerberus To Amplify Cyber Threats

0 1

Discover how the ErrorFather campaign deploys the undetected Cerberus Android Banking Trojan to target users. Learn about its sophisticated infection chain, malicious capabilities, and the ongoing cyber threats posed by repurposed malware

on Thu, 7AM

From cyble.com

Cyble Urges ICS Vulnerability Fixes For TEM, Mitsubishi, And Delta Electronics - Cyble

0 0

Two of the vulnerable ICS/OT products identified by Cyble this week have no known fixes and require mitigation steps.

on Oct 10

From cyble.com

CISA Issues Urgent Advisory On Critical Vulnerabilities In Ivanti Products - Cyble

0 0

CISA has issued a critical advisory on vulnerabilities in multiple Ivanti products, including EPMM, CSA, and more, highlighting urgent security concerns.

on Oct 10

From cyble.com

Security Updates For Adobe FrameMaker: Addressing Critical Vulnerabilities - Cyble

0 0

Adobe has released critical security updates for FrameMaker and other products to address vulnerabilities that could allow arbitrary code execution.

on Oct 10

From cyble.com

OEMs Are Urged To Address Vulnerabilities In Device Communication - Cyble

0 0

Qualcomm's 2024 Security Bulletin reveals critical vulnerabilities, including CVE-2024-43047, linked to the FASTRPC driver, urging OEMs to implement patches urgently

on Oct 9

From cyble.com

Apple Issues Urgent Security Advisory For IOS And IPadOS Vulnerabilities - Cyble

0 0

Apple's latest security advisory reveals two medium-severity vulnerabilities in iOS and iPadOS, with patches available in iOS 18.0.1 and iPadOS 18.0.1.

on Oct 8

From cyble.com

MisterioLNK: The Open-Source Builder Behind Malicious Loaders - Cyble

0 0

Read CRIL's analysis of a new MisterioLNK loader builder that generates LNK, BAT, CMD, and VBS loader files designed to download and execute remote files.

on Oct 8

From cyble.com

Cyble Honeypot Sensors Detect D-Link, Cisco, QNAP And Linux Attacks - Cyble

0 0

Cyble’s Vulnerability Intelligence unit last week detected attacks on Cisco, QNAP, D-Link, PHP, Progress Telerik, Linux systems and more.

on Oct 8

From cyble.com

CISA Flags Multiple Critical Vulnerabilities Exposed Across Major Platforms - Cyble

0 0

CISA adds six new vulnerabilities to the KEV catalog, affecting Zimbra, Ivanti, D-Link, DrayTek, GPAC, and SAP.

on Oct 8

From cyble.com

Weekly IT Vulnerability Report: Cyble Urges Fixes For NVIDIA, Adobe, CUPS - Cyble

0 0

Cyble researchers are alerting security teams to eight vulnerabilities and 10 dark web exploits – including claimed 0-days in Apple and Android.

on Oct 4

From cyble.com

Four Critical Vulnerabilities Added To CISA's Exploited Vulnerabilities Catalog - Cyble

0 0

CISA has added four critical vulnerabilities to its catalog, highlighting risks in D-Link and DrayTek routers, GPAC, and SAP Commerce Cloud.

on Oct 4

From cyble.com

Zimbra Remote Code Execution Vulnerability Under Active Attack - Cyble

0 0

As Zimbra is already a popular target for threat actors, users are urged to patch the postjournal vulnerability as soon as possible.

on Oct 3

From cyble.com

Silent Intrusion: Unraveling The Sophisticated Attack Leveraging VS Code For Unauthorized Access - Cyble

0 0

Cyble uncovers sophisticated exploitation of VSCode's remote tunnel capabilities, illuminating how attackers gain unauthorized access and the implications for cybersecurity.

on Oct 1

From cyble.com

Weekly IT Vulnerability Report: Cyble Urges Fixes For Ivanti, GitLab And Microchip - Cyble

0 0

Ivanti, GitLab and Microchip Technologies top the list of patches to prioritize – along with 7 vulnerabilities discussed in underground forums.

on Oct 1

From cyble.com

Cyble Honeypot Sensors Detect WordPress Plugin Attack, New Banking Trojan - Cyble

0 0

WordPress plugins are under active attack, a new banking trojan is spreading, and phishing and brute-force attacks continue unabated.

on Oct 1

From cyble.com

Top ICS Vulnerabilities This Week: Cyble Urges Siemens And Rockwell Automation Fixes - Cyble

0 0

Of 11 vulnerabilities analyzed by Cyble researchers, two stand out as requiring urgent attention by security teams.

on Sep 27

From cyble.com

Nexe Backdoor Unleashed: Patchwork APT Group's Sophisticated Evasion Of Defenses - Cyble

0 0

Cyble analyzes an ongoing Patchwork APT campaign using a new backdoor that employs API patching to bypass security alerts.

on Sep 26

From cyble.com

Deluge Of Threats To Water Utilities: Plugging The Leaks In Operational Technology Security - Cyble

0 0

Cyble investigates recent and ongoing cyber threats to Water Utilities by Pro-Russian Hacktivists.

on Sep 26

From cyble.com

Urgent Security Advisory: CVE-2024-7593 Exposes Ivanti VTM To Attacks - Cyble

0 0

CISA and Ivanti warn of CVE-2024-7593, a critical authentication bypass in Virtual Traffic Manager, urging organizations to act swiftly against threats.

on Sep 25

From cyble.com

Apex Softcell Flaws Could Lead To Unauthorized Transactions, CERT-In Warns - Cyble

0 0

High-severity vulnerabilities in Apex Softcell’s mobile stock trading and back office platforms could lead to OTP bypass, transaction manipulation, and more.

on Sep 25

From cyble.com

Cyble Recognized In G2 Fall 2024 Report As A Testament To Excellence In Brand Intelligence  - Cyble

0 0

Discover how Cyble earned multiple accolades in the G2 Fall 2024 Report, including High Performer and Leader in Asia/Pacific, showcasing its excellence in brand intelligence. Learn about its user-friendly interface, rapid setup, and commitment to innovative cybersecurity solutions that address...

on Sep 25

From cyble.com

Cyble Recognized In G2 Fall 2024 For Leadership And Best-in-Class Dark Web Monitoring Setup And Usability  - Cyble

0 0

Cyble earns top honors in G2 Fall 2024 for Leadership, Easiest Setup, and Easiest to Use in Dark Web Monitoring, showcasing its commitment to user-friendly, effective cybersecurity solutions. - FOR Dark Web Monitoring

on Sep 25

From cyble.com

Critical Vulnerability Discovered In Versa Director: What Organizations Need To Know - Cyble

0 0

CISA has identified a critical vulnerability (CVE-2024-45229) in Versa Networks' Versa Director, urging organizations to take immediate action to protect their network security.

on Sep 24

From cyble.com

Undetected Android Spyware Targeting Individuals In South Korea - Cyble

0 0

Cyble analyzes stealthy Android spyware targeting South Koreans, using an Amazon AWS S3 bucket to store exfiltrated data, including SMSs, contacts, and media.

on Sep 23

From cyble.com

Reputation Hijacking With JamPlus: A Maneuver To Bypass Smart App Control (SAC) - Cyble

0 0

Cyble analyzes how threat actors utilize reputation Hijacking and JamPlus Utility to bypass Smart App Control (SAC), enabling seamless delivery of malicious payloads like stealers.

on Sep 22

From cyble.com

Cyble Sensor Intelligence: Attacks, Phishing Scams And Brute-Force Detections - Cyble

0 0

Cyble’s weekly sensor intelligence report identified active vulnerability exploits, phishing campaigns and brute-force attacks.

on Sep 20

From cyble.com

Gamaredon’s Spear-Phishing Assault On Ukraine’s Military - Cyble

0 0

Cyble Research and Intelligence Labs (CRIL) identified an active Gamaredon campaign targeting Ukrainian military personnel through spear-phishing emails. Click here to learn more!

on Sep 20

From cyble.com

HED: Weekly IT Vulnerability Report For September 11 – September 17, 2024 - Cyble

0 0

Cyble's Weekly IT Vulnerability Report highlights critical vulnerabilities, underground forum activity, and key security recommendations to help protect your network from the latest cyber threats.

on Sep 20

From cyble.com

Solar Monitoring Solutions In Hacktivists’ Crosshairs - Cyble

0 0

Just evil targets Lithuanian energy infrastructure.

on Sep 20

From cyble.com

Top ICS Vulnerabilities This Week: Critical Bugs In Rockwell Automation, Siemens, And Viessmann - Cyble

0 0

Cyble’s latest ICS vulnerabilities report discloses eight critical vulnerabilities in products, including Rockwell Automation, Siemens, and Viessmann Climate Solutions.

on Sep 19

From cyble.com

CISA Adds Progress WhatsUp Gold & MSHTML Vulnerabilities - Cyble

0 0

CISA has added vulnerabilities affecting the Microsoft Windows MSHTML Platform (CVE-2024-43461) and Progress WhatsUp Gold network monitoring solution (CVE-2024-6670) to its Known Exploited Vulnerabilities catalog.

on Sep 19

From cyble.com

Top ICS Vulnerabilities This Week: Critical Bugs In Rockwell Automation, Siemens, And Viessmann - Cyble

0 0

Cyble’s latest ICS vulnerabilities report discloses eight critical vulnerabilities in products, including Rockwell Automation, Siemens, and Viessmann Climate Solutions.

on Sep 18

From cyble.com

CISA Adds Progress WhatsUp Gold And MSHTML Vulnerabilities To Known Exploited Vulnerabilities Catalog - Cyble

0 0

Progress WhatsUp Gold network monitoring software and the Windows MSHTML platform are under active attack; users are urged to patch vulnerabilities now.

on Sep 17

From cyble.com

CERT India Reports Vulnerabilities In Multiple QNAP Products - Cyble

0 0

Read Cyble’s analysis of recent critical severity vulnerabilities in multiple QNAP products based on a CERT-In advisory and steps users can take to mitigate their risk of exploitation.

on Sep 17

From cyble.com

CISA Adds Ivanti Cloud Services Appliance Vulnerability To Known Exploited Vulnerabilities Catalog (CVE-2024-8190) - Cyble

0 0

CISA has added CVE-2024-8190, an OS command injection flaw in Ivanti CSA 4.6, to its KEV catalog and requires immediate patching or upgrade to CSA 5.0.

on Sep 16

From cyble.com

Top Cyber Threats Of The Week: Brute Force Attacks, CVE Attempts, Malware Infections - Cyble

0 0

Top Cyber Threats of the Week: CGSI has reported several threats including CVE-2024 vulnerabilities, brute-force attacks & online phishing scams. Learn more at Cyble!

on Sep 16

From cyble.com

GitLab Community And Enterprise Editions Receive New Updates To Mitigate Severe Security Risks  - Cyble

0 0

GitLab has released critical patches for versions 17.3.2, 17.2.5, and 17.1.7, addressing severe security vulnerabilities.

on Sep 16

From cyble.com

Major ICS Security Flaws Disclosed In LOYTEC, Hughes, And Baxter Products - Cyble

0 0

CISA warns of critical ICS vulnerabilities in LOYTEC, Hughes, and Baxter products, exposing sensitive data and systems to high-risk attacks.

on Sep 13

From cyble.com

Stealthy Fileless Attack Targets Attendees Of Upcoming US-Taiwan Defense Industry Event

0 0

Cyble Research and Intelligence Labs (CRIL) uncovers a campaign targeting the US-Taiwan Defense Industry Conference, using a malicious file to execute an in-memory attack, evading detection and exfiltrating sensitive data.

on Sep 13

From cyble.com

CISA Adds Three Critical Vulnerabilities To Known Exploited Vulnerabilities Catalog - Cyble

0 0

The Cybersecurity and Infrastructure Security Agency (CISA) KEV Catalog adds CVE-2016-3714, CVE-2017-1000253, and CVE-2024-40766.

on Sep 10

From cyble.com

The Re-Emergence Of CVE-2024-32113: How CVE-2024-45195 Has Amplified Exploitation Risks - Cyble

0 0

The Cyble Global Sensor Intelligence Network (CGSI) detected active exploitation attempts of the Apache OFBiz vulnerability CVE-2024-32113, leading to unauthorized remote code execution.

on Sep 10

From cyble.com

Weekly IT Vulnerability Report For August 28, 2024 – September 03, 2024 - Cyble

0 0

Cyble's Weekly IT Vulnerability Report highlights critical vulnerabilities, underground forum activity, and key security recommendations to help protect your network from the latest cyber threats.

on Sep 10

From cyble.com

The Rise Of Head Mare: A Geopolitical And Cybersecurity Analysis  - Cyble

0 2

Head Mare targets Russian and Belarusian organizations, leveraging cyber attacks to influence geopolitical tensions with Ukraine.

on Sep 5

From cyble.com

Iranian State-Sponsored Hackers Become Access Brokers For Ransomware Gangsca - Cyble

0 1

Iranian state-backed actors operating under aliases are increasingly targeting critical infrastructure and expanding their activities into brokering access for ransomware affiliates.

on Sep 5

From cyble.com

The Intricate Babylon RAT Campaign Targets Malaysian Politicians, Government - Cyble

0 0

Read Cyble's Analysis Uncovering the Babylon RAT Campaign Aimed at Inadvertent Users in Malaysia

on Sep 4