A recently discovered critical vulnerability known as ‘regreSSHion’ puts millions of Linux systems at severe risk. Identified as CVE-2024-6387, this flaw affects the OpenSSH server (sshd) on glibc-based Linux systems,…
A recently discovered critical vulnerability known as ‘regreSSHion’ puts millions of Linux systems at severe risk. Identified as CVE-2024-6387, this flaw affects the OpenSSH server (sshd) on glibc-based Linux systems,…
During the Brandefense Intelligence Team operations, a threat actor was observed selling an exploit for CVE-2024-30078. This vulnerability allows remote code execution (RCE) via the WiFi driver on all Windows…
Yesterday marked Microsoft June 2024 Patch Tuesday, which introduces security updates for 51 flaws, including eighteen remote code execution (RCE) flaws and one publicly disclosed zero-day vulnerability. Key Fixes in…
LockBit ransomware group, known as one of the most active cybercriminal organizations globally, has victimized over 2,000 entities and has extorted more than $120 million in ransom payments while demanding…
Veeam, a leading provider of backup and data protection solutions, has released a security advisory concerning a critical remote code execution (RCE) vulnerability in its Service Provider Console (VSPC). Identified…
Palo Alto Networks has recently issued urgent fixes to remedy a critical security vulnerability affecting PAN-OS software. This vulnerability tracked as CVE-2024-3400 with a severity score of 10.0 (CVSS), has…
Security researchers have uncovered a significant vulnerability dubbed “LeakyCLI,” affecting command-line tools utilized in AWS and Google Cloud environments. Similar to a previously identified flaw in Azure CLI, this issue…
The data breach alerting service Have I Been Pwned (HIBP) has announced that SurveyLama experienced a data breach in February 2024, putting the sensitive data of 4.4 million users at…
Over the summer of 2023, Microsoft faced criticism for security blunders that allowed Chinese hackers to peek into the emails of US government officials. A detailed report pointed out that…
A sophisticated hacking campaign has been underway since early 2022 by a China-based advanced persistent threat group known as Earth Krahang. Targeting at least 116 organizations across 45 countries globally,…