π¨ Cisco issued an alert about a new zero-day vulnerability in IOS XE (CVE-2023-20273). Attackers are actively exploiting it to install a malicious Lua-based implant on vulnerable devices.
Learn more: https://thehackernews.com/2023/10/cisco-zero-day-exploited-to-implant.html
Learn more: https://thehackernews.com/2023/10/cisco-zero-day-exploited-to-implant.html
π₯20π10π€5π€―3
π¨ Alert: Identity services provider Okta discloses breach, impacting customers including BeyondTrust and Cloudflare. Unidentified threat actors accessed the support system.
Learn more: https://thehackernews.com/2023/10/oktas-support-system-breach-exposes.html
Learn more: https://thehackernews.com/2023/10/oktas-support-system-breach-exposes.html
π27π13π±11π₯7π€―3
Big Wins Against Cybercrime!
β Europol takes down Ragnar Locker ransomware's infrastructure, arrests key suspect in France.
β Trigona leak site infiltrated and shut down.
β India's CBI conducts nationwide raids on cyber-enabled financial crime infrastructure.
Read: https://thehackernews.com/2023/10/europol-dismantles-ragnar-locker.html
β Europol takes down Ragnar Locker ransomware's infrastructure, arrests key suspect in France.
β Trigona leak site infiltrated and shut down.
β India's CBI conducts nationwide raids on cyber-enabled financial crime infrastructure.
Read: https://thehackernews.com/2023/10/europol-dismantles-ragnar-locker.html
π₯63π32π11π±10π6π€4β‘2π€―2
π΅οΈββοΈ Beware of Quasar RAT: A sneaky malware exploiting DLL side-loading to hide its tracks on compromised Windows systems.
Learn more: https://thehackernews.com/2023/10/quasar-rat-leverages-dll-side-loading.html
Learn more: https://thehackernews.com/2023/10/quasar-rat-leverages-dll-side-loading.html
π22π5π€―4
DoNot Team Strikes Again. Learn about the new .NET-based backdoor, Firebird, targeting victims in Pakistan and Afghanistan.
Learn more: https://thehackernews.com/2023/10/donot-teams-new-firebird-backdoor-hits.html
Learn more: https://thehackernews.com/2023/10/donot-teams-new-firebird-backdoor-hits.html
π29π7
Worried about AI tool proliferation in your organization? Get immediate visibility with Nudge Security.
Discover what AI tools your employees are using from Day 1. Stay in control of AI's impact on your business.
Read: https://thehackernews.com/2023/10/whos-experimenting-with-ai-tools-in.html
Discover what AI tools your employees are using from Day 1. Stay in control of AI's impact on your business.
Read: https://thehackernews.com/2023/10/whos-experimenting-with-ai-tools-in.html
π30π₯9π±3
π£ Heads up! Popular password management solution "1Password" detected suspicious activity related to a recent "Okta" support system breach.
Fortunately, user data was unaffected, but here's what you need to know: https://thehackernews.com/2023/10/1password-detects-suspicious-activity.html
Fortunately, user data was unaffected, but here's what you need to know: https://thehackernews.com/2023/10/1password-detects-suspicious-activity.html
π17π€―15π6
π¨ Discover how threat actors modified the backdoor implanted on compromised Cisco devices by exploiting zero-day flaws in IOS XE software, evading detection with new techniques.
Learn about the implant's updated behavior: https://thehackernews.com/2023/10/backdoor-implant-on-hacked-cisco.html
Learn about the implant's updated behavior: https://thehackernews.com/2023/10/backdoor-implant-on-hacked-cisco.html
π₯22π11
π’ Attention iOS users:
Experts have unearthed crucial insights about the TriangleDB implant, which targets Apple iOS devices. It can record audio, pilfer #iCloud Keychain data, and more.
Learn more: https://thehackernews.com/2023/10/operation-triangulation-experts-uncover.html
Experts have unearthed crucial insights about the TriangleDB implant, which targets Apple iOS devices. It can record audio, pilfer #iCloud Keychain data, and more.
Learn more: https://thehackernews.com/2023/10/operation-triangulation-experts-uncover.html
π₯15π12π€―8π5π4β‘1
Spanish authorities bust cybercriminal group behind β¬3 million online scam. Weapons, cash, and more seized.
Full story: https://thehackernews.com/2023/10/34-cybercriminals-arrested-in-spain-for.html
Full story: https://thehackernews.com/2023/10/34-cybercriminals-arrested-in-spain-for.html
π₯17π7π5π€5
Strong security is no longer a luxuryβit's a necessity.
Find out how to secure your APIs with modern authentication and encryption methods in our latest article: https://thehackernews.com/2023/10/make-api-management-less-scary-for-your.html
Find out how to secure your APIs with modern authentication and encryption methods in our latest article: https://thehackernews.com/2023/10/make-api-management-less-scary-for-your.html
π19π13
β‘οΈ Ex-NSA employeeβworking as an Information Systems Security Designerβhas pleaded guilty to attempting to transmit classified defense information to Russia, seeking $85,000 in exchange.
Read details here: https://thehackernews.com/2023/10/ex-nsa-employee-pleads-guilty-to.html
Read details here: https://thehackernews.com/2023/10/ex-nsa-employee-pleads-guilty-to.html
π€―39π20π11π9π₯7β‘5π±5
π¨ Urgent: Proof-of-concept (PoC) exploits have been publicly released for the recently discovered vulnerabilities in VMware Aria Operations, Citrix NetScaler ADC, and NetScaler Gateway.
Read: https://thehackernews.com/2023/10/alert-poc-exploits-released-for-citrix.html
Don't waitβapply fixes now and safeguard your systems.
Read: https://thehackernews.com/2023/10/alert-poc-exploits-released-for-citrix.html
Don't waitβapply fixes now and safeguard your systems.
π₯18π8β‘4π€4π€―4π±2
Cybercriminals are targeting Brazil's popular PIX payment system using a new malware called GoPIX, delivered to users via malvertising campaigns when they search for "WhatsApp web."
Learn more π https://thehackernews.com/2023/10/malvertising-campaign-targets-brazils.html
Learn more π https://thehackernews.com/2023/10/malvertising-campaign-targets-brazils.html
π₯16β‘4π4π€―3
π¨ VMware releases crucial security updates to fix a new critical vulnerability (CVE-2023-34048) in vCenter Server.
Details in the article: https://thehackernews.com/2023/10/act-now-vmware-releases-patch-for.html
Protect your systems from remote code execution.
Details in the article: https://thehackernews.com/2023/10/act-now-vmware-releases-patch-for.html
Protect your systems from remote code execution.
π17π16π₯1
CloudTrail and Server Access Logs provide critical insights into Amazon S3 security. Find out how to use them effectively to prevent ransomware attacks.
Read: https://thehackernews.com/2023/10/the-rise-of-s3-ransomware-how-to.html
Read: https://thehackernews.com/2023/10/the-rise-of-s3-ransomware-how-to.html
π21π€―1
Popular online services like Grammarly, Vidio, and Bukalapak faced critical security vulnerabilities in their OAuth implementation that could have allowed hackers to hijack user accounts.
Find details here: https://thehackernews.com/2023/10/critical-oauth-flaws-uncovered-in.html
Find details here: https://thehackernews.com/2023/10/critical-oauth-flaws-uncovered-in.html
π±17π10π9
β οΈ WARNING β Winter Vivern, a notorious nation-state hacker group with links to Belarus and Russia, exploiting a zero-day flaw in Roundcube webmail software to steal email messages.
Learn more: https://thehackernews.com/2023/10/nation-state-hackers-exploiting-zero.html
Learn more: https://thehackernews.com/2023/10/nation-state-hackers-exploiting-zero.html
π17π€―11π3π2π₯1
π¨ Meet YoroTrooper: A mysterious threat actor with ties to Kazakhstan. Learn how they're using custom tools and stealthy tactics to infiltrate state-owned entities across CIS countries.
Read: https://thehackernews.com/2023/10/yorotrooper-researchers-warn-of.html
Read: https://thehackernews.com/2023/10/yorotrooper-researchers-warn-of.html
π€―9π5π4
π Healthcare IT professionals, take note.
A critical RCE vulnerability (CVE-2023-43208) has been uncovered in Mirth Connect, a healthcare data integration platform.
Read: https://thehackernews.com/2023/10/critical-flaw-in-nextgens-mirth-connect.html
Update to version 4.4.1 immediately to prevent unauthorized access.
A critical RCE vulnerability (CVE-2023-43208) has been uncovered in Mirth Connect, a healthcare data integration platform.
Read: https://thehackernews.com/2023/10/critical-flaw-in-nextgens-mirth-connect.html
Update to version 4.4.1 immediately to prevent unauthorized access.
π17π₯3π±3
π¨ ALERT: Iranian threat actor, Tortoiseshell, strikes again with new malware, IMAPLoader.
This .NET malware uses email as a command-and-control channel and targets maritime and logistics sectors.
Learn more: https://thehackernews.com/2023/10/iranian-group-tortoiseshell-launches.html
This .NET malware uses email as a command-and-control channel and targets maritime and logistics sectors.
Learn more: https://thehackernews.com/2023/10/iranian-group-tortoiseshell-launches.html
π₯19π11π€―11π4π€2β‘1