TGViewer
Channel Public Channel
๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News

๐Ÿ›ก Cybersecurity & Privacy ๐Ÿ›ก - News

@cibsecurity

๐Ÿ—ž The finest daily news on cybersecurity and privacy.

๐Ÿ”” Daily releases.

๐Ÿ’ป Is your online life secure?

๐Ÿ“ฉ lalilolalo.dev@gmail.com
Subscribers
28.4K
Photos
0
Videos
0
Links
90.9K

Showing posts older than #90933 ยท Back to latest

Older Posts 20 shown
Post #90932 92
๐Ÿ–‹๏ธ Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells ๐Ÿ–‹๏ธ

Threat actors are exploiting a critical security flaw in WooCommerce Wholesale Lead Capture, a premium WordPress plugin that has more than 6,000 active installs. "This vulnerability can be leveraged by unauthenticated attackers to upload arbitrary files, including PHP backdoors, and achieve remote code execution," Wordfence said. The WordPress security company said it has blocked over.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90931 78
๐Ÿ“” PHP Webshell Campaign Targets WordPress Through Critical WooCommerce Plugin Bug ๐Ÿ“”

Attackers are exploiting a critical flaw in a thirdparty WooCommerce plugin to upload PHP webshells.

๐Ÿ“– Read more.

๐Ÿ”— Via "Infosecurity Magazine"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Infosecurity Magazine PHP Webshell Campaign Targets WordPress Through WooCommerce Bug Attackers are exploiting a critical flaw in a third-party WooCommerce plugin to upload PHP webshells
Post #90930 110
๐Ÿ–‹๏ธ Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks ๐Ÿ–‹๏ธ

Acronis has warned that a highseverity security flaw in its Backup plugin for cPanel and Web Host Manager WHM deployments has been exploited in the wild. The vulnerability, tracked as CVE202687886 CVSS score 7.8, is described as a case of local privilege escalation due to insecure file permissions. It affects the following versions Acronis Backup plugin for cPanel WHM Linux.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90929 89
๐Ÿ–‹๏ธ Active Exploitation Attempts Target WSO2 API Manager JWT Bypass With Forged Admin Tokens ๐Ÿ–‹๏ธ

A critical security flaw in WSO2 API Manager has come under active exploitation in the wild, according to findings from watchTowr. The vulnerability, tracked as CVE20265430 CVSS score 9.810.0, is a case of improper verification of a cryptographic signature that could result in account takeover. Hacktron Team has been credited with discovering and reporting the flaw. "JWT authentication.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90928 105
๐Ÿ–‹๏ธ Threat Intelligence Alone Won't Close the Exploitation Gap ๐Ÿ–‹๏ธ

A leaked credential shows up in a criminal marketplace, or a vulnerability gets a disclosure advisory, and either one can be weaponized against a real target before most security teams have triaged the alert. Attackers are combining that kind of intelligence with AIassisted exploitation to accelerate the path from exposure to breach faster than most security programs are built to react.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90927 83
๐Ÿ–‹๏ธ Attackers Exploit WooCommerce Wholesale Lead Capture Flaw to Plant PHP Web Shells ๐Ÿ–‹๏ธ

Threat actors are exploiting a critical security flaw in WooCommerce Wholesale Lead Capture, a premium WordPress plugin that has more than 6,000 active installs. "This vulnerability can be leveraged by unauthenticated attackers to upload arbitrary files, including PHP backdoors, and achieve remote code execution," Wordfence said. The WordPress security company said it has blocked over.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90926 75
๐Ÿ–‹๏ธ Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation ๐Ÿ–‹๏ธ

Google has disclosed that a highseverity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as CVE202658704 CVSS score 8.0, is a privilege escalation flaw. "In Cellular Modem, there is a possible permission bypass due to a logic error in the code," according to a description of the bug in the NIST National Vulnerability Database.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90925 79
๐Ÿ–‹๏ธ Acronis cPanel Backup Plugin Vulnerability Exploited in Targeted Attacks ๐Ÿ–‹๏ธ

Acronis has warned that a highseverity security flaw in its Backup plugin for cPanel and Web Host Manager WHM deployments has been exploited in the wild. The vulnerability, tracked as CVE202687886 CVSS score 7.8, is described as a case of local privilege escalation due to insecure file permissions. It affects the following versions Acronis Backup plugin for cPanel WHM Linux.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90924 81
๐Ÿ–‹๏ธ N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security ๐Ÿ–‹๏ธ

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on obvious malware activity. From there, a single compromised identity can open the door to sensitive data, business systems, and additional cloud.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90923 68
๐Ÿ–‹๏ธ Threat Intelligence Alone Won't Close the Exploitation Gap ๐Ÿ–‹๏ธ

A leaked credential shows up in a criminal marketplace, or a vulnerability gets a disclosure advisory, and either one can be weaponized against a real target before most security teams have triaged the alert. Attackers are combining that kind of intelligence with AIassisted exploitation to accelerate the path from exposure to breach faster than most security programs are built to react.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90922 69
๐Ÿ–‹๏ธ Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can't Install Fix ๐Ÿ–‹๏ธ

Parallels Desktop for Mac has a flaw that lets an ordinary local account run code as root, the highest level of access on a Mac, software company JFrog said this week. The attack needs code already running on the machine as a normal user, so it does not work over the network. JFrog says the fix is in Parallels Desktop 27, a version that Intel Macs cannot install. Yuval Moravchick, who leads.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
  • โค 1
Post #90921 69
๐Ÿ–‹๏ธ Google Patches Pixel Modem Flaw Amid Signs of Limited Targeted Exploitation ๐Ÿ–‹๏ธ

Google has disclosed that a highseverity security flaw in its Pixel Cellular Modem has come under exploitation in the wild. The vulnerability, tracked as CVE202658704 CVSS score 8.0, is a privilege escalation flaw. "In Cellular Modem, there is a possible permission bypass due to a logic error in the code," according to a description of the bug in the NIST National Vulnerability Database.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90920 80
๐Ÿ–‹๏ธ Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories ๐Ÿ–‹๏ธ

Mandiant says an attacker hijacked an active AI codingassistant session at an unnamed softwareasaservice provider and later spread ShaiHulud across about 100 internal code repositories. Before the repository spread, the assistant recommended software that the attacker had poisoned, and the recommendation was accepted. The worm stole repository secrets and source code for the.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90919 73
๐Ÿ–‹๏ธ N0va Phishkit Targets US and EU Businesses: A New Challenge for Identity Security ๐Ÿ–‹๏ธ

N0va is targeting organizations across North America and Europe with phishing campaigns that impersonate trusted services and abuse legitimate authentication flows. Successful attacks can give threat actors access to valid accounts without relying on obvious malware activity. From there, a single compromised identity can open the door to sensitive data, business systems, and additional cloud.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90918 111
๐Ÿ–‹๏ธ One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude ๐Ÿ–‹๏ธ

Security researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromiumbased products Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and the Claude in Chrome extension. Once the extension was installed, it could access each product's builtin AI with a single click. On Comet, Edge,.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90917 88
๐Ÿ–‹๏ธ Parallels Desktop Flaw Lets Non-Admin Mac Users Gain Root, but Intel Macs Can't Install Fix ๐Ÿ–‹๏ธ

Parallels Desktop for Mac has a flaw that lets an ordinary local account run code as root, the highest level of access on a Mac, software company JFrog said this week. The attack needs code already running on the machine as a normal user, so it does not work over the network. JFrog says the fix is in Parallels Desktop 27, a version that Intel Macs cannot install. Yuval Moravchick, who leads.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90916 86
๐Ÿ–‹๏ธ Three Threat Groups Target Russian Enterprises With Backdoors, Ransomware, and Wipers ๐Ÿ–‹๏ธ

Enterprises in Russia have emerged as the target of three threat activity clusters tracked as NightEagle, Hacking Cat, and Toy Ghouls, according to multiple reports from Kaspersky. The cybersecurity vendor said it has identified attacks mounted by NightEagle aka APTQ95, a threat actor known to be active since at least 2023, that involve new techniques for persistence and lateral movement.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90915 89
๐Ÿ–‹๏ธ Attacker Hijacks AI Coding Assistant Session, Spreads Shai-Hulud Across About 100 Repositories ๐Ÿ–‹๏ธ

Mandiant says an attacker hijacked an active AI codingassistant session at an unnamed softwareasaservice provider and later spread ShaiHulud across about 100 internal code repositories. Before the repository spread, the assistant recommended software that the attacker had poisoned, and the recommendation was accepted. The worm stole repository secrets and source code for the.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90914 197
๐Ÿ–‹๏ธ Attackers Exploit Issabel Framework Flaw Enabling Unauthenticated OS Command Execution ๐Ÿ–‹๏ธ

A critical security flaw in Issabel Framework, a webbased framework for the opensource unified communications PBX software, has come under active exploitation. The vulnerability in question is CVE202689026 CVSS v3.1 score 9.8CVSS v4.0 score 9.3, which can allow an unauthenticated remote attacker to execute arbitrary operating system OS commands by taking advantage of a hardcoded.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Post #90913 123
๐Ÿ–‹๏ธ One Extension Could Hijack AI Assistants Across Chrome, Comet, Edge, Opera Neon and Claude ๐Ÿ–‹๏ธ

Security researchers at Forever Security have shown that one ordinary browser extension could take control of the AI assistants built into five Chromiumbased products Gemini Live in Chrome, Perplexity Comet, Microsoft Edge, Opera Neon and the Claude in Chrome extension. Once the extension was installed, it could access each product's builtin AI with a single click. On Comet, Edge,.

๐Ÿ“– Read more.

๐Ÿ”— Via "The Hacker News"

----------
๐Ÿ‘๏ธ Seen on @cibsecurity
Older posts โ†’
Threads Profile ViewerView any public Threads profile without an account.Open ThreadLook โ†’Writing with AI? Make it sound human.Metric37 rewrites AI drafts so they read naturally. Free AI detector, 1,500 words free.Try Metric37 โ†’