Back
Showing 1-10 of 110 results
Oracle

Alert! Oracle Releases Critical Patch Update 2024 – 372 Vulnerabilities are Fixed

April 17, 2024
0

Oracle has released its Critical Patch Update (CPU) for April 2024, addressing 372 vulnerabilities across multiple products. The Critical Patch Update provides fixes for security flaws in widely-used Oracle products including Database Server, Fusion Middleware, Enterprise Manager, E-Business Suite, Supply …

Critical Node.js Flaw Lets Attackers Execute Malicious Code on Windows Machines

Critical Node.js Flaw Lets Attackers Execute Malicious Code on Windows Machines

April 11, 2024
0

Node.js project disclosed a high-severity vulnerability affecting multiple active release lines of its software on Windows platforms. This flaw, identified as CVE-2024-27980, allows attackers to execute arbitrary commands on affected systems, posing a serious risk to applications and services built …

fake putty

Hackers Attacking Infra Teams With Fake PuTTY & FileZilla Ads

April 10, 2024
0

A sophisticated malvertising campaign is targeting system administrators across North America. The attackers are using fake ads for popular system utilities to distribute a dangerous strain of malware known as Nitrogen. Step 1: Luring Victims with Malicious Ads The campaign exploits the trust users place in search engine advertisements. By displaying sponsored search results for …

New Cyber Attack Targeting Hospital IT Helpdesks with Voice Calls

New Cyber Attack Targeting Hospital IT Helpdesks with Voice Calls

April 8, 2024
0

Hospitals across the nation are on high alert as sophisticated cybercriminals use advanced social engineering tactics to target IT help desks. The Health Sector Cybersecurity Coordination Center (HC3) has issued a Sector Alert detailing the latest threat to the healthcare industry. The HC3’s …

Apache HTTP Server Flaw Let Attackers Inject Malicious Headers & HTTP/2 DoS

Apache HTTP Server Flaw Let Attackers Inject Malicious Headers & HTTP/2 DoS

April 5, 2024
0

Apache released updates to address several vulnerabilities impacting the Apache HTTP server that let attackers launch HTTP/2 DoS attacks and insert malicious headers. Server operations are being adversely affected by these vulnerabilities, which are proving to be a serious danger. A …

backdoor scanner

WordPress Plugin SQl Injection Exposes 1,000,000 Sites to Cyber Attack

April 4, 2024
0

Over a million WordPress websites have been at risk due to a critical SQL Injection vulnerability discovered in the popular LayerSlider plugin. The flaw, CVE-2024-2879, could allow unauthenticated attackers to extract sensitive data, including password hashes, from websites’ databases. CVE-2024-2879: A Critical …

cactus hackers

JumpServer Critical Flaws Let Attackers Execute Arbitrary Remote Code

April 3, 2024
0

The critical vulnerabilities in JumpServer’s Ansible that allowed attackers to execute arbitrary remote code have been patched. With a CVSS base score of 10, the critical vulnerabilities identified as CVE-2024-29201 and CVE-2024-29202 impact versions v3.0.0-v3.10.6. A jump server is an intermediary device that …