Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain

A Critical SonicWall Vulnerability Exposes Organizations Worldwide to Active Attacks Attackers have been exploiting two zero-day vulnerabilities in SonicWall’s SMA 1000 series, a network security appliance used by thousands of organizations worldwide. The exploitation of these flaws may lead to an attack chain that compromises sensitive data and allows hackers to move laterally within the … Read more

How to Secure Enterprise AI: From Adoption to Incident Readiness

**Enterprise AI Security Crisis: Identity Exposure Exposes Vulnerable Attack Paths** Imagine your company’s cutting-edge artificial intelligence (AI) system, touted as a game-changer in efficiency and productivity, is quietly exposing itself to catastrophic cyber threats. Sounds far-fetched? Think again. A recent analysis of 11 real-world cases reveals that identity exposure has become a ticking time bomb … Read more

Attackers Exploit Critical Switchvox Flaw to Deploy Reverse Shells Without Credentials

A Critical Vulnerability in Switchvox Exposes Organizations to Remote Attacks, No Credentials Required A disturbing trend has emerged as threat actors have begun exploiting a critical flaw in Switchvox, an open-source IP PBX system used by thousands of organizations worldwide. By capitalizing on this vulnerability, attackers can establish reverse shells on compromised servers without needing … Read more

Researchers Use Claude to Port Pre-Auth RCE Exploit From One PLC Model to Another

A Chilling Example of the PLC Security Vulnerability that’s Left the Industry Scrambling for Solutions Researchers have made a groundbreaking discovery in the world of industrial control systems, revealing that a pre-authentication remote code execution (RCE) exploit can be transferred from one programmable logic controller (PLC) model to another. This alarming finding has significant implications … Read more

Extradited Russian Hacker Faces Charges Over Excel Malware Campaign That Infected Thousands

A notorious Russian hacker, extradited from Eastern Europe, is set to face charges in connection with a massive Excel malware campaign that infected thousands of computers worldwide. The indictment alleges that this individual, along with several accomplices, orchestrated a sophisticated attack that leveraged vulnerabilities in Microsoft’s popular spreadsheet software. The alleged scheme began when attackers … Read more

GeoNetwork Fixes Unauthenticated RCE Chain Affecting Government Geoportal Backends

A critical vulnerability in GeoNetwork, a popular open-source geospatial data management platform used by government agencies worldwide, has been patched after it was discovered that attackers could exploit an unauthenticated remote code execution (RCE) chain. The flaw, which affected the backend of geoportal systems, could have allowed malicious actors to take control of entire networks … Read more

Attackers Exploit Two SonicWall SMA 1000 Zero-Days That May Form an Attack Chain

Cybersecurity firm SonicWall has disclosed two critical vulnerabilities in its SMA 1000 series, which attackers have already exploited to launch a sophisticated attack chain. The vulnerabilities, designated as CVE-2023-12277 and CVE-2023-12278, are zero-day flaws that allow hackers to gain unauthorized access to sensitive data and systems. The affected devices are part of SonicWall’s Secure Mobile … Read more

SonicWall warns of actively exploited SMA1000 zero-day flaws

**Zero-Day Flaws in SonicWall Appliances Actively Exploited by Threat Actors** Security researchers have sounded the alarm once again about a pair of zero-day vulnerabilities in SonicWall’s Secure Remote Access (SRA) appliance, known as SMA1000. The company has confirmed that these flaws are being actively exploited by threat actors to launch remote code execution attacks against … Read more

Sality botnet infrastructure dismantled in joint global takedown

A Long-Running Cybercrime Operation Bites the Dust: Sality Botnet Infrastructure Dismantled in Global Takedown International law enforcement agencies and private partners have dealt a significant blow to cybercrime, dismantling the infrastructure of the notorious Sality botnet in a joint global operation. The takedown, which involved the seizure of malware-linked domains in several countries, marks a … Read more

Authorities Turn Sality’s P2P Network Against Itself, Cutting Off New Malware Payloads

A Clever Counterattack Against Sality: Authorities Shut Down Malware Pipeline In a bold move, cybersecurity authorities have successfully disrupted the malware distribution network of Sality, a notorious peer-to-peer (P2P) botnet responsible for unleashing devastating attacks on unsuspecting victims worldwide. This targeted operation has effectively severed the pipeline through which new malware payloads were being delivered, … Read more