Critical SHARP Routers Vulnerabilities Lets Attacker Trigger RCE to Gain Root Access
SHARP has issued an urgent security advisory regarding multiple vulnerabilities discovered in several of its router products. Customers using the affected devices are strongly urged to update their firmware immediately to secure their networks...
CISA Warns of 4 New Vulnerabilities Exploited in the Wild
The Cybersecurity and Infrastructure Security Agency (CISA) has added four new vulnerabilities to its Known Exploited Vulnerabilities (KEV) Catalog, highlighting significant security risks for various devices used worldwide.
These vulnerabilities, which have been actively...
Microsoft Azure MFA Vulnerability Allows Unauthorized User Account Access
A critical vulnerability in Microsoft's Multi-Factor Authentication (MFA) implementation has been uncovered by Oasis Security's research team, potentially exposing over 400 million Office 365 accounts to unauthorized access.
The flaw, dubbed "AuthQuake," allowed attackers...
Mauri Ransomware Exploiting Apache ActiveMQ Vulnerability
The Apache ActiveMQ Vulnerability, identified as CVE-2023-46604, was exploited by Mauri Ransomware threat actors to install CoinMiners.
Threat actors were detected continuously launching attacks on unpatched, vulnerable Apache ActiveMQ services. Once the compromised machine has...
Critical Windows Zero-Day Vulnerability Exploited in the Wild – PoC Released
Microsoft has patched a critical zero-day vulnerability (CVE-2024-38193) that the notorious North Korean hacker group Lazarus APT actively exploited. Gen Threat Labs discovered and reported the flaw, which posed a severe threat to Windows...
Deloitte Hacked – Brain Cipher Ransomware Group Allegedly Stolen 1 TB of Data
Notorious ransomware group Brain Cipher has claimed to have breached Deloitte UK, allegedly exfiltrating over 1 terabyte of sensitive data from the professional services giant.
Brain Cipher is a ransomware group that emerged in June...
Thinkware Cloud APK Vulnerability Let Attackers Execute Arbitrary Code
A critical security flaw has been uncovered recently in the Thinkware Cloud APK version 4.3.46, Thinkware's cloud-based dashcam services.
The vulnerability, identified as CVE-2024-53614, allows malicious actors to access sensitive data and execute arbitrary commands...
Windows Server 2012 0-day Vulnerability Let Attackers Bypass Security Checks
A critical security vulnerability in Windows Server 2012 and Server 2012 R2 has been uncovered, allowing attackers to bypass essential security checks enforced by the Mark of the Web (MotW) feature.
This zero-day flaw, which...