195Articles
10Categories
2024-12-10Date
🚨
CISA Adds One Known Exploited Vulnerability to CatalogCISA has added one new vulnerability to its  Known Exploited Vulnerabilities Catalog , based on evidence of active exploitation. CVE-2024-49138 Microsoft Windows Common Log File System (CLFS) Driver Heap-Based Buffer Overflow Vulnerability These types of vulnerabilities are …
KEV
πŸ›
Mauri Ransomware Leverages Apache ActiveMQ Vulnerability to Deploy CoinMiners
πŸ›
Dell Warns of Critical Code Execution Vulnerability in Power Manager
πŸ›
Critical SAP Vulnerabilities Let Attackers Upload Malicious PDF Files
πŸ›
Cleo File Transfer Tool Vulnerability Exploited in Wild Against Enterprises
KEV
πŸ›
CVE-2024-43594 System Center Operations Manager Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49057 Microsoft Defender for Endpoint on Android Spoofing Vulnerability
πŸ›
CVE-2024-49059 Microsoft Office Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49064 Microsoft SharePoint Information Disclosure Vulnerability
πŸ›
CVE-2024-49068 Microsoft SharePoint Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49069 Microsoft Excel Remote Code Execution Vulnerability
πŸ›
CVE-2024-49070 Microsoft SharePoint Remote Code Execution Vulnerability
πŸ›
CVE-2024-49073 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49074 Windows Kernel-Mode Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49084 Windows Kernel Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49085 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49086 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49087 Windows Mobile Broadband Driver Information Disclosure Vulnerability
πŸ›
CVE-2024-49089 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49091 Windows Domain Name Service Remote Code Execution Vulnerability
πŸ›
CVE-2024-49092 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49093 Windows Resilient File System (ReFS) Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49094 Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49096 Microsoft Message Queuing (MSMQ) Denial of Service Vulnerability
πŸ›
CVE-2024-49097 Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49098 Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
πŸ›
CVE-2024-49099 Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
πŸ›
CVE-2024-49101 Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49102 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49103 Windows Wireless Wide Area Network Service (WwanSvc) Information Disclosure Vulnerability
πŸ›
CVE-2024-49104 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49106 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49107 WmsRepair Service Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49108 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49111 Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49115 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49117 Windows Hyper-V Remote Code Execution Vulnerability
πŸ›
CVE-2024-49119 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49120 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49121 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
πŸ›
CVE-2024-49122 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49123 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49124 Lightweight Directory Access Protocol (LDAP) Client Remote Code Execution Vulnerability
πŸ›
CVE-2024-49125 Windows Routing and Remote Access Service (RRAS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49126 Windows Local Security Authority Subsystem Service (LSASS) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49129 Windows Remote Desktop Gateway (RD Gateway) Denial of Service Vulnerability
πŸ›
CVE-2024-49132 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49142 Microsoft Access Remote Code Execution Vulnerability
πŸ›
CVE-2024-43600 Microsoft Office Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49062 Microsoft SharePoint Information Disclosure Vulnerability
πŸ›
CVE-2024-49063 Microsoft/Muzic Remote Code Execution Vulnerability
πŸ›
CVE-2024-49065 Microsoft Office Remote Code Execution Vulnerability
πŸ›
CVE-2024-49072 Windows Task Scheduler Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49075 Windows Remote Desktop ServicesΒ Denial of Service Vulnerability
πŸ›
CVE-2024-49076 Windows Virtualization-Based Security (VBS) Enclave Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49077 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49078 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49079 Input Method Editor (IME) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49080 Windows IP Routing Management Snapin Remote Code Execution Vulnerability
πŸ›
CVE-2024-49081 Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49082 Windows File Explorer Information Disclosure Vulnerability
πŸ›
CVE-2024-49083 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49088 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49090 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49095 Windows PrintWorkflowUserSvc Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49109 Wireless Wide Area Network Service (WwanSvc) Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49110 Windows Mobile Broadband Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49112 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49113 Windows Lightweight Directory Access Protocol (LDAP) Denial of Service Vulnerability
πŸ›
CVE-2024-49114 Windows Cloud Files Mini Filter Driver Elevation of Privilege Vulnerability
πŸ›
CVE-2024-49116 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49118 Microsoft Message Queuing (MSMQ) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49127 Windows Lightweight Directory Access Protocol (LDAP) Remote Code Execution Vulnerability
πŸ›
CVE-2024-49128 Windows Remote Desktop Services Remote Code Execution Vulnerability
πŸ›
CVE-2024-49138 Windows Common Log File System Driver Elevation of Privilege Vulnerability
πŸ›
Microsoft Patch Tuesday: December 2024, (Tue, Dec 10th)
πŸ›
CVE-2024-49105 Remote Desktop Client Remote Code Execution Vulnerability
πŸ›
OpenWrt Update Flaw Exposed Devices to Malicious Firmware
πŸ›
Ivanti Releases Security Updates for Multiple Products
πŸ›
Attackers exploit zero-day RCE flaw in Cleo managed file transfer
⚠️
EDR-Software – ein Kaufratgeber
⚠️
Cybersecurity-Defizite bedrohen Deutschland
⚠️
Top tips for CISOs running red teams
⚠️
Authorities Dismantled Hackers Who Stolen Millions Using AirBnB
⚠️
Hackers Target Android Users via WhatsApp to Steal Sensitive Data
⚠️
Ongoing Phishing and Malware Campaigns in December 2024
⚠️
CERT-UA Warns of Phishing Attacks Targeting Ukraine’s Defense and Security Force
⚠️
Hackers are exploiting a flaw in popular file-transfer tools to launch mass hacks, again
⚠️
Microsoft NTLM Zero-Day to Remain Unpatched Until April
⚠️
Phone Phishing Gang Busted: Eight Arrested in Belgium and Netherlands
⚠️
Cisco Says Flaws in Industrial Routers, BGP Tool Remain Unpatched 8 Months After Disclosure
⚠️
AWS customers face massive breach amid alleged ShinyHunters regroup
⚠️
Webinar Today: Inside a Hacker’s Playbook – How Cybercriminals Use Deepfakes
⚠️
The Future of Network Security: Automated Internal and External Pentesting
⚠️
EU cybersecurity rules for smart devices enter into force
⚠️
Astrix's $45B Series B Targets Non-Human Identity Security
⚠️
SAP Patches Critical Vulnerability in NetWeaver
⚠️
Astrix's $45M Series B Targets Non-Human Identity Security
⚠️
New Cleo zero-day RCE flaw exploited in data theft attacks
⚠️
Phishing Attacks Are Now Leveraging Google Ads to Hijack Employee Payments
⚠️
Cloud Security at Risk: Tackling Misconfigurations Head-On - Nadia Mazzarolo - CSP #204
⚠️
Looking Back on 2024 - ASW #310
⚠️
CISA Releases Seven Industrial Control Systems Advisories
⚠️
Cleo File Transfer Vulnerability Under Exploitation – Patch Pending, Mitigation Urged
⚠️
Black Hat Europe preview: Cryptographic protocol attacks and AI in the spotlight
⚠️
Anton’s Security Blog Quarterly Q4 2024
⚠️
US sanctions Chinese cybersecurity firm for firewall hacks targeting critical infrastructure
⚠️
Microsoft December 2024 Patch Tuesday fixes 1 exploited zero-day, 71 flaws
KEV
⚠️
Microsoft December 2024 Patch Tuesday fixes 1 exploited zero-day, 71 flaws
⚠️
Google Cloud expands vulnerability detection for Artifact Registry using OSV
⚠️
Microsoft Releases December 2024 Security Updates
⚠️
Adobe Releases Security Updates for Multiple Products
⚠️
Hackers Exploit AWS Misconfigurations in Massive Data Breach
⚠️
Ivanti warns of maximum severity CSA auth bypass vulnerability
⚠️
US Indicts, Sanctions Alleged Chinese Sophos Firewall Hacker
⚠️
WPForms bug allows Stripe refunds on millions of WordPress sites
⚠️
Microsoft Ships Urgent Patch for Exploited Windows CLFS Zero-Day
⚠️
β€œCP3O” pleads guilty to multi-million dollar cryptomining scheme
⚠️
China’s Propaganda Expansion: Inside the Rise of International Communication Centers (ICCs)
⚠️
Threat Actors Exploit Flaw in Cleo File Transfer Tools β€˜En Masse’
⚠️
China-Based Hacker Charged for Conspiring to Develop and Deploy Malware That Exploited Tens of Thousands of Firewalls Worldwide
⚠️
Citrix Acquisitions Boost Zero-Trust Defense for Hybrid Work
⚠️
Critical Patches Issued for Microsoft Products, December 10, 2024
πŸ“‹
Microsoft Patch Tuesday December 2024, Patch for 16 Critical Security Flaws
πŸ“’
SAP security advisory – December 2024 monthly rollup (AV24-699)
πŸ“’
Romanian energy supplier Electrica hit by ransomware
πŸ“’
[Control systems] Siemens security advisory (AV24-700)
πŸ“’
Financial Sector Turning to Multi-Vendor Cloud Strategies
πŸ“’
New Microsoft Purview features help protect and govern your data in the era of AI
πŸ”₯
APT-C-53 Weaponizing LNK Files To Deploy Malware Into Target Systems
πŸ”₯
U.S. Subsidiary of a Japanese water Treatment Company Hit By Ransomware Attack
πŸ”₯
Black Basta Ransomware Leverages Microsoft Teams To Deliver Malicious Payloads
πŸ”₯
New Meeten Malware Attacking macOS And Windows Users To Steal Logins
πŸ”₯
From Vulnerabilities to Breaches: The Shiny Nemesis Cyber Operation
πŸ”₯
'Operation Digital Eye' Attack Targets European IT Orgs
πŸ”₯
Deloitte responds to ransomware claims, says one client system involved
πŸ”₯
Ransomware attack hits leading heart surgery device maker
πŸ”₯
Chinese hackers use Visual Studio Code tunnels for remote access
πŸ”₯
Axios and Unit 42’s Sam Rubin Discuss Disruptive Cyberattacks
πŸ”₯
Termite-Bande bekennt sich zu Blue Yonder-Hack
πŸ”₯
Inside the incident: Uncovering an advanced phishing attack
πŸ”₯
Phishing Holds the Top Spot as the Primary Entry Point for Ransomware Attacks
πŸ”₯
Default Passwords Are STILL Getting Companies Hacked 🀦
πŸ”₯
US sanctions Chinese firm for hacking firewalls in ransomware attacks
πŸ”₯
Head Mare Intensifies Attacks On Russia With PhantomCore
πŸ”₯
3AM ransomware: what you need to know
πŸ”₯
Wyden proposes bill to secure US telecoms after Salt Typhoon hacks
πŸ”₯
Hospital Notifies 316,000 of Breach in Christmas 2023 Hack
πŸ•΅οΈ
ISC Stormcast For Tuesday, December 10th, 2024 https://isc.sans.edu/podcastdetail/9248, (Tue, Dec 10th)
πŸ•΅οΈ
Hackers Can Hijack Your Terminal Via Prompt Injection using LLM-powered Apps
πŸ•΅οΈ
Hackers Attacking Global Sporting Championships Via Fake Domains To Steal Logins
πŸ•΅οΈ
Let’s Encrypt to End Support for Online Certificate Status Protocol (OCSP)
πŸ•΅οΈ
Researchers Uncovered Hackers Infrastructre Using Passive DNS Technique
πŸ•΅οΈ
$50 Million Radiant Capital Heist Blamed on North Korean Hackers
πŸ•΅οΈ
Zukunft schenken und die Hacker School unterstΓΌtzen
πŸ•΅οΈ
Microsoft Rolls Out Default NTLM Relay Attack Mitigations
πŸ•΅οΈ
Ongoing Phishing and Malware Campaigns in December 2024
πŸ•΅οΈ
Mysterious Drone-Like Objects Disrupting Electronics in New Jersey
πŸ•΅οΈ
Radiant links $50 million crypto heist to North Korean hackers
πŸ•΅οΈ
Russian hacktivists target oil, gas and water sectors worldwide
πŸ•΅οΈ
OpenWrt supply chain attack scare prompts urgent upgrades
πŸ•΅οΈ
Hackers Weaponize Visual Studio Code Remote Tunnels for Cyber Espionage
πŸ•΅οΈ
WhatsApp patches View Once flaw exposing vanishing media
πŸ•΅οΈ
Full-Face Masks to Frustrate Identification
πŸ•΅οΈ
Astrix Security Banks $45M Series B to Secure Non-Human Identities
πŸ•΅οΈ
Microsoft Bets $10,000 on Prompt Injection Protections of LLM Email Client
πŸ•΅οΈ
Microsoft 365 outage takes down Office web apps, admin center
πŸ•΅οΈ
Visual Studio Tunnels Abused For Stealthy Remote Access
πŸ•΅οΈ
Why identity threat detection and response matters: 5 key risks
πŸ•΅οΈ
CyberheistNews Vol 14 #50 Cruel Year-End Twist: When Fake Firing Is A Real Phishing Attack
πŸ•΅οΈ
RedLine Malware Weaponizing Pirated Corporate Softwares To Steal Logins
πŸ•΅οΈ
OWASP Stockholm Meetup Oct 2024 - Secure Software Development Evening
πŸ•΅οΈ
Manufacturing Companies Targeted with New Lumma Campaign
πŸ•΅οΈ
AI's Junk Vulns, Web3 Backdoor, LLM CTFs, 5 GenAI Mistakes, Top Ten for LLMs - ASW #310
πŸ•΅οΈ
Satya Nadella's Vision for Microsoft: AI, AI and AI
πŸ•΅οΈ
Wald.ai Raises $4M in Seed Funding to Protect Data in Conversations With AI Assistants
πŸ•΅οΈ
AppLite: A New AntiDot Variant Targeting Mobile Employee Devices
πŸ•΅οΈ
AMD’s trusted execution environment blown wide open by new BadRAM attack
πŸ•΅οΈ
Adobe Patches Over 160 Vulnerabilities Across 16 Products
🌐
Fake Recruiters Distribute Banking Trojan via Malicious Apps in Phishing Scam
🌐
Sophos AI to present on how to defang malicious AI models at Black Hat Europe
πŸŽ™οΈ
ADV240002 Microsoft Office Defense in Depth Update
πŸŽ™οΈ
The AI Fix #28: Robot dogs with bombs, and who is David Mayer?
πŸŽ™οΈ
How cyber-secure is your business? | Unlocked 403 cybersecurity podcast (ep. 8)
πŸ“‘
Sophos Named One of Computerworld’s 2025 Best Places to Work in IT
πŸ“‘
Microsoft 365 outage takes down Office web apps, admin center
πŸ“‘
Cohesity completes its merger with Veritas; here’s how they’ll integrate
πŸ“‘
Mimecast’s Big Moves: Elevate, Code42 & Aware Explained!
πŸ“‘
US Senator announces new bill to secure telecom companies in wake of Chinese hacks
πŸ“‘
Nearest Neighbor: remote attacks on Wi-Fi networks
πŸ“‘
FTC distributes $72 million in Fortnite refunds from Epic Games
πŸ“‘
Would You Code in Bed With THIS? πŸ˜‚
πŸ“‘
Windows 11 KB5048667 & KB5048685 cumulative updates released
πŸ“‘
Windows 10 KB5048652 update fixes new motherboard activation bug
πŸ“‘
Network security best practices for the holidays