Latest Cybersecurity News and Articles


Researcher Details Microsoft Outlook Zero-Click Vulnerability (CVE-2024-38021)

21 August 2024
The vulnerability stems from how Outlook handles hyperlink objects in image tags in emails, enabling attackers to exploit a composite moniker to trigger remote code execution.

Security leaders discuss the National Public Data breach

21 August 2024
National Public Data experienced a breach potentially affecting 2.9 billion individuals.

TLS Bootstrap Attack on Azure Kubernetes Services can Leak Sensitive Credentials

21 August 2024
A new threat known as "WireServing" has been identified in Azure Kubernetes Services (AKS) by Mandiant. This vulnerability could have allowed attackers to escalate privileges and access sensitive credentials within compromised clusters.

Critical Heap Overflow Vulnerability Discovered in FFmpeg, PoC Published

21 August 2024
CVE-2024-7272 is a critical heap overflow vulnerability found in FFmpeg, the popular multimedia framework. The vulnerability affects versions up to 5.1.5 and has a CVSS score of 8.8.

It's Time To Untangle the SaaS Ball of Yarn

21 August 2024
It's no great revelation to say that SaaS applications have changed the way we operate, both in our personal and professional lives. We routinely rely on cloud-based and remote applications to conduct our basic functions, with the result that the only true perimeter of our networks has become the identities with which we log into these services. Unfortunately – as is so often the case – our

Styx Stealer Creator's OPSEC Fail Leaks Client List and Profit Details

21 August 2024
In what's a case of an operational security (OPSEC) lapse, the operator behind a new information stealer called Styx Stealer leaked data from their own computer, including details related to the clients, profit information, nicknames, phone numbers, and email addresses. Styx Stealer, a derivative of the Phemedrone Stealer, is capable of stealing browser data, instant messenger sessions from

New Msupedge Backdoor Targeting Taiwan Employs Stealthy Communications

21 August 2024
Hackers have been using a PHP vulnerability to deploy a stealthy backdoor called Msupedge. This backdoor was recently used in a cyberattack against an unnamed university in Taiwan.

New macOS Malware TodoSwift Linked to North Korean Hacking Groups

21 August 2024
Cybersecurity researchers have uncovered a new macOS malware strain dubbed TodoSwift that they say exhibits commonalities with known malicious software used by North Korean hacking groups. "This application shares several behaviors with malware we've seen that originated in North Korea (DPRK) — specifically the threat actor known as BlueNoroff — such as KANDYKORN and RustBucket," Kandji security

RCE Vulnerability in Atlassian Bamboo Data Center and Server

21 August 2024
This flaw, present in versions 9.1.0 through 9.6.0, allows authenticated attackers to execute arbitrary code within the Bamboo environment, posing risks to confidentiality, integrity, and availability.

Spring Security Flaw Leaves Applications Open to Unauthorized Access

21 August 2024
A high-severity vulnerability (CVE-2024-38810) has been discovered in Spring Security, potentially allowing unauthorized access to sensitive data within affected applications. The vulnerability impacts Spring Security versions 6.3.0 and 6.3.1.

Unmasking Styx Stealer: How a Hacker's Slip Led to an Intelligence Treasure Trove

21 August 2024
Styx Stealer is based on the Phemedrone Stealer and is available for purchase online. It has the ability to steal passwords, cookies, crypto wallet data, and messenger sessions, as well as gather system information.

Rising Abuse of URL Rewriting in Phishing

21 August 2024
The abuse of URL rewriting in phishing attacks has emerged as a new trend, allowing threat actors to hide malicious links behind trusted domains of security vendors. Exploiting these features enables bypassing detection mechanisms.

Over 10,000 WordPress Sites at Risk: Critical File Deletion Flaw Found in InPost Plugins

21 August 2024
The vulnerability, known as CVE-2024-6500, affects the InPost PL and InPost for WooCommerce plugins, allowing attackers to read and delete sensitive files like the wp-config.php configuration file.

CERT-UA Warns of New Vermin-Linked Phishing Attacks with PoW Bait

21 August 2024
The Computer Emergency Response Team of Ukraine (CERT-UA) has warned of new phishing attacks that aim to infect devices with malware. The activity has been attributed to a threat cluster it tracks as UAC-0020, which is also known as Vermin. The exact scale and scope of the attacks are presently unknown. The attack chains commence with phishing messages with photos of alleged prisoners of war (

GiveWP WordPress Plugin Vulnerability Puts 100,000+ Websites at Risk

21 August 2024
A maximum-severity security flaw has been disclosed in the WordPress GiveWP donation and fundraising plugin that exposes more than 100,000 websites to remote code execution attacks. The flaw, tracked as CVE-2024-5932 (CVSS score: 10.0), impacts all versions of the plugin prior to version 3.14.2, which was released on August 7, 2024. A security researcher, who goes by the online alias villu164,

Security’s Top 5 – June 2024 

21 August 2024
Security’s Top 5 from Security magazine showcases the top stories and new developments from across the security industry throughout June.

Authentication bypass discovered in Microsoft Entra ID

21 August 2024
Security leaders weigh in on a recently revealed authentication bypass in Microsoft Entra ID. 

Detecting AWS Account Compromise: Key Indicators in CloudTrail Logs for Stolen API Keys

20 August 2024
As cloud infrastructure becomes the backbone of modern enterprises, ensuring the security of these environments is paramount. With AWS (Amazon Web Services) still being the dominant cloud it is important for any security professional to know where to look for signs of compromise. AWS CloudTrail stands out as an essential tool for tracking and logging API activity, providing a comprehensive

Czech Mobile Users Targeted in New Banking Credential Theft Scheme

20 August 2024
Mobile users in the Czech Republic are the target of a novel phishing campaign that leverages a Progressive Web Application (PWA) in an attempt to steal their banking account credentials. The attacks have targeted the Czech-based Československá obchodní banka (CSOB), as well as the Hungarian OTP Bank and the Georgian TBC Bank, according to Slovak cybersecurity company ESET. "The phishing

Africa's Economies Feel Pain of Cybersecurity Deficit

20 August 2024
Cybercrime is a growing threat to Africa's economies, hindering their progress despite rapid GDP growth. The continent faces challenges like digital illiteracy and a shortage of cybersecurity professionals.