Exploits stories - Page 2
Secureworks finds Iranian threat group back with new persona
Wed, 1st Feb 2023
#
advanced persistent threat protection
#
disruption
#
data leak
Secureworks has found that the Iranian threat group, Cobalt Sapling, has reemerged with a new persona, Abraham's Ax.
Claroty's Team82 finds vulnerabilities in historian server
Thu, 19th Jan 2023
#
breach prevention
#
cybersecurity
#
data breach
Claroty's research team, Team82, has examined the GE Proficy Historian, finding five exploitable vulnerabilities capable of causing damage to the system.
GreyNoise Intelligence identifies exploitation threats for 2023
Fri, 23rd Dec 2022
#
uc
#
advanced persistent threat protection
#
cybersecurity
GreyNoise Intelligence unveils its 2022 Mass Exploitation Report, delving deep into threat detection events from the past year.
Lookout finds predatory behaviour on 300 loan apps
Thu, 1st Dec 2022
#
application security
#
email security
#
casb
Almost 300 loan apps found in Africa, Southeast Asia, India, Colombia, and Mexico exhibit predatory behavior, says Lookout.
Attackers use automation to increase speed from exploits
Thu, 20th Oct 2022
#
cloud security
#
exploits
#
nato
Attackers are advancing to keep pace with cloud adoption and response time, according to a new report from Lacework.
52% of ransomware incidents started with compromise of unpatched remote services
Thu, 6th Oct 2022
#
ransomware
#
cybersecurity
#
secureworks
The exploitation in remote services has become the primary initial access vector in ransomware attacks over the past year.
Dramatic uptick in threat activity with exploits growing nearly 150%
Thu, 11th Aug 2022
#
exploits
#
cyber attacks
#
log4j
Threat activity has spiked in Q2 2022, with malware events rising by 25%, botnets doubling, and exploit activity growing almost 150%, says Nuspire's report.
2021 the year cyber criminals got creative - Proofpoint
Wed, 8th Jun 2022
#
supply chain
#
cybersecurity
#
proofpoint
One constant that remains as organisations approach a sense of normalcy after a disruptive year is that cyber criminals continue to target and exploit people.
New vulnerabilities found in Nuspire's Q1 2022 Threat Report
Thu, 19th May 2022
#
malware
#
ddos
#
advanced persistent threat protection
Nuspire's Q1 2022 Threat Report reveals surge in threat actor activity as new vulnerabilities emerge. Mirai, STRRAT and Emotet see a resurgence.
Use of malware, botnets and exploits expands in Q1 2022
Thu, 12th May 2022
#
malware
#
ddos
#
cybersecurity
Malware, botnet, and exploit activity increased in Q1 2022, according to a report by managed security services provider Nuspire.
WordPress vulnerabilities more than doubled in 2021
Thu, 13th Jan 2022
#
risk & compliance
#
cybersecurity
#
wordpress
WordPress vulnerabilities have more than doubled in 2021, with 77% of them being exploitable, according to Risk Based Security.
Log4j actively exploited, serious complications can occur according to CERT NZ
Mon, 13th Dec 2021
#
martech
#
breach prevention
#
cybersecurity
The widely-used java logging library, log4j, has been actively exploited, according to an update from CERT NZ and Catalyst.
Companies exploited by high-risk vulnerabilities, new research shows
Wed, 4th Nov 2020
#
security vulnerabilities
#
exploits
#
positive technologies
84% of companies have high-risk vulnerabilities on their network perimeter, with half of them fixable through software updates, says Positive Technologies.
Radiflow launches iRISK for greater visibility into risk and vulnerability
Tue, 11th Feb 2020
#
exploits
#
cyber risk
#
radiflow
Radiflow launches iRISK, a risk analytics service for industrial networks, enhancing visibility and mitigation of vulnerabilities with NIST-recommended actions.
US$250,000 up for grabs with Microsoft's bug bounty
Mon, 19th Mar 2018
#
cybersecurity
#
microsoft
#
microsoft azure
Microsoft has announced the Speculative Execution Side Channel Bounty Program that is offering up to USD$250,000 to people who reveal novel bugs.
Cisco ASA appliances at risk of denial of service exploit
Tue, 13th Feb 2018
#
cisco
#
exploits
#
acsc
The Australian Cyber Security Centre (ACSC) has issued an official alert to those who use Cisco's Adaptive Security Appliance (ASA).
North Korean threat group suspected to be behind Adobe Flash exploit
Mon, 5th Feb 2018
#
martech
#
breach prevention
#
adobe
An exploit that targeted an Adobe Flash vulnerability looks to be the work of a North Korean group called TEMP.Reaper.
ShadowPad exploit 'one of the biggest' APAC supply chain attacks
Tue, 22nd Aug 2017
#
encryption
#
supply chain
#
kaspersky
Malaysia's MyCERT warns of mass APAC supply chain breach after ShadowPad exploit hits NetSarang servers, stealing data.
WatchGuard report: 30% of all malware isn't caught by legacy AV
Mon, 8th May 2017
#
malware
#
firewalls
#
network infrastructure
WatchGuard's Quarterly Internet Security Report says that 30% of malware attacks are new or zero day exploits - and legacy AVs are missing threats.
March saw rise in web attacks; but email malware and spam drop back
Wed, 19th Apr 2017
#
malware
#
cybersecurity
#
symantec
Symantec reports back on the latest threat statistics for March - email malware dipped, but web attacks are the biggest since 2016.