DDoS attacks in Q4 2020
News overview Cybercriminals are constantly on the lookout for means and methods to make attacks more destructive. In Q4Â 2020, Citrix...
News overview Cybercriminals are constantly on the lookout for means and methods to make attacks more destructive. In Q4Â 2020, Citrix...
InsightIDR was built in the cloud to support dynamic and rapidly changing environments—including remote workers, hybrid cloud and on-premises architectures,...
Researchers from threat intelligence Cyble have discovered threat actors abusing the Ngrok platform in a fresh phishing campaign. Researchers at...
Multiple vulnerabilities in the popular file-sharing app SHAREit have yet, to be addressed, experts from Trend Micro warned. SHAREit is...
Experts discovered a new Bluetooth overlay skimmer that interferes with the ability of the terminal to read chip-based cards, forcing...
VMware released security patches for a potentially serious vulnerability affecting the vSphere Replication product. VMware has recently released security patches...
French agency ANSSI attributes a series of attacks targeting Centreon servers to the Russia-linked Sandworm APT group. The French security...
Summary: Code execution with escalated privileges vulnerability in Micro Focus products Operation Bridge Manager and Operation Bridge (containerized). The vulneravility...
Summary: An unrestricted file upload vulnerability in keywordsImport.php in TestLink 1.9.20 allows remote attackers to execute arbitrary code by uploading...
Summary: Mechanize is an open-source ruby library that makes automated web interaction easy. In Mechanize from version 2.0.0 and before...
Summary: In p2p_copy_client_info of p2p.c, there is a possible out of bounds write due to a missing bounds check. This...
Summary: A vulnerability has been identified in SINEC NMS (All versions < V1.0 SP1 Update 1), SINEMA Server (All versions...
In May 2017, the file sharing platform Ge.tt suffered a data breach. The data was subsequently put up for sale...
This week on Lock and Code, we discuss the top security headlines generated right here on Labs and around the...
The UK’s National Crime Agency (NCA)—working alongside the US Secret Service, Homeland Security, the FBI, Europol, and the District Attorney’s...
 Russian internet and search organization Yandex declared on Friday that one of its system administrators had enabled unapproved access to...
A court in the United States has sentenced Ukrainian citizen Alexander Musienko to more than seven years in prison for...
 Mutuelle Nationale des Hospitaliers (MNH), a French health insurance company has been hit by a ransomware attack that has severely...
 The PayPal currency converter functionality was damaged by severe cross-site scripting (XSS) vulnerability. An attacker might be able to run...
 The FBI issued this week a Private Industry Notification (PIN) caution to warn organizations about the dangers of utilizing obsolete...
Figures of the year In 2020: The share of spam in email traffic amounted to 50.37%, down by 6.14 p.p....
GitLab Watchman is an application that uses the GitLab API to audit GitLab for sensitive data and credentials exposed internally....
OSV is a vulnerability database and triage infrastructure for open source projects aimed at helping both open source maintainers and...
Microsoft says it found 1,000-plus developers’ fingerprints on the SolarWinds attack Microsoft’s analysis of the SolarWinds supply chain attack revealed...