Category: EN

TrueConf Zero-Day Exploited in Asian Government Attacks

A Chinese threat actor exploited the video conferencing platform to perform reconnaissance, escalate privileges, and execute additional payloads. The post TrueConf Zero-Day Exploited in Asian Government Attacks appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the…

Company that Secretly Records and Publishes Zoom Meetings

WebinarTV searches the internet for public Zoom invites, joins the meetings, secretly records them, and publishes (alternate link) the recordings. It doesn’t use the Zoom record feature, so Zoom can’t do anything about it. This article has been indexed from…

Critical ShareFile Flaws Lead to Unauthenticated RCE

The vulnerabilities can be chained together to bypass authentication and upload arbitrary files to the server. The post Critical ShareFile Flaws Lead to Unauthenticated RCE appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article:…

Hasbro Hit in Cyberattack Disrupting Ops

Hasbro recently reported a cyberattack that forced the company to disable various systems, potentially leading to significant disruptions in order processing and product distribution. This article has been indexed from CyberMaterial Read the original article: Hasbro Hit in Cyberattack Disrupting…

Drift Hit By North Korean Hackers Seize Funds

The Drift Protocol suffered a loss of over 280 million dollars after a sophisticated attacker seized control of its Security Council administrative powers. This article has been indexed from CyberMaterial Read the original article: Drift Hit By North Korean Hackers…

Man Admits Locking Thousands of Windows PCs

A former core infrastructure engineer has admitted to orchestrating a failed extortion plot that involved locking administrators out of hundreds of servers at his New Jersey-based employer. This article has been indexed from CyberMaterial Read the original article: Man Admits…

CERT-EU Reports EC Hack Affecting EU Data

The European Union’s Cybersecurity Service has linked a significant breach of the European Commission’s cloud infrastructure to the TeamPCP threat actor group. This article has been indexed from CyberMaterial Read the original article: CERT-EU Reports EC Hack Affecting EU Data

Free VPNs Leak Data Despite Privacy Claims

Many free Android VPNs function as data collection tools rather than privacy protectors by tracking user activity and requesting invasive permissions. This article has been indexed from CyberMaterial Read the original article: Free VPNs Leak Data Despite Privacy Claims

Mobile Attack Surface Expands as Enterprises Lose Control

Shadow AI embedded in everyday apps, combined with outdated mobile devices and zero-click exploits, is creating a new and largely unseen mobile risk. The post Mobile Attack Surface Expands as Enterprises Lose Control appeared first on SecurityWeek. This article has…