Blog
PoC for Critical Arcserve UDP Vulnerabilities Published
Arcserve has addressed critical security vulnerabilities (CVE-2024-0799, CVE-2024-0800) in its Unified Data Protection (UDP) solution, which could be exploited to upload malicious files to the underlying Windows system.
New DOD Cyber Policy Office Opening Soon, Sources Say
The Pentagon is set to open its new Office of the Assistant Secretary of Defense for Cyber Policy on March 18. This office is a response to a congressionally mandated effort to elevate the military's focus on cybersecurity.
Google Introduces Enhanced Real-Time URL Protection for Chrome Users
Google on Thursday announced an enhanced version of Safe Browsing to provide real-time, privacy-preserving URL protection and safeguard users from visiting potentially malicious sites. “The Standard protection mode for Chrome on desktop and iOS will check sites...
New Report Suggests Surge in SaaS Assets, Employee Data Sharing
Security researchers at DoControl observed a significant rise in software-as-a-service (SaaS) assets, with an average of 286,000 new assets generated weekly in 2023, representing an 189% surge from the previous year.
RedCurl Group Leverages Windows Component for Cyber Espionage
The attack chain involves phishing emails with malicious attachments, the use of curl and Program Compatibility Assistant (PCA) in Windows to deliver and execute malicious payloads, and unauthorized command execution using Impacket.
Malicious Ads Targeting Chinese Users with Fake Notepad++ and VNote Installers
Chinese users looking for legitimate software such as Notepad++ and VNote on search engines like Baidu are being targeted with malicious ads and bogus links to distribute trojanized versions of the software and ultimately deploy Geacon, a Golang-based implementation...
Threat Actors Leverage Document Publishing Sites for Ongoing Credential and Session Token Theft
Threat actors are exploiting legitimate digital document publishing (DDP) sites to host phishing lures, making it harder for traditional security controls to detect and block these attacks.
Threat Actors Leverage Document Publishing Sites for Ongoing Credential and Session Token Theft
Threat actors are exploiting legitimate digital document publishing (DDP) sites to host phishing lures, making it harder for traditional security controls to detect and block these attacks.
Threat Actors Leverage Document Publishing Sites for Ongoing Credential and Session Token Theft
Threat actors are exploiting legitimate digital document publishing (DDP) sites to host phishing lures, making it harder for traditional security controls to detect and block these attacks.
Threat Actors Leverage Document Publishing Sites for Ongoing Credential and Session Token Theft
Threat actors are exploiting legitimate digital document publishing (DDP) sites to host phishing lures, making it harder for traditional security controls to detect and block these attacks.
FREE GUIDE