Vulnerability

GitLab Flaw Let Attackers Write Files to Arbitrary Locations

GitLab releases security updates addressing several critical vulnerabilities, urging all users to upgrade immediately. This release is crucial for ensuring…

12 months ago

Exploit Released for Critical Jenkins RCE Flaw

Jenkins has been discovered with a critical vulnerability that is associated with arbitrary code execution that threat actors can exploit…

12 months ago

Google Kubernetes Flaw Let Any Google User Control the Cluster

Researchers have discovered a new loophole in Google Kubernetes Engine (GKE), which threat actors can utilize with a Google account…

12 months ago

Parrot TDS Injecting Malicious Redirect Scripts on Hacked Sites

In the murky depths of the digital world lurks a cunning predator – Parrot TDS, a cyber campaign that has…

12 months ago

Hackers Abusing LSASS Process Memory to Exfiltrate Login Credentials

Threat actors have been using several methods for credential stealing, which varies based on the environment and infrastructure of the…

12 months ago

PixieFAIL – 9 UEFI Flaws Expose Computers to Remote Attacks

Hackers exploit UEFI flaws to gain unauthorized access to a system's firmware, enabling them to implant persistent malware or manipulate…

12 months ago

Multichain Inferno Drainer Abuse Web3 Protocols To Connect Crypto Wallets

A cryptocurrency-related phishing scam that uses malware called a drainer is one of the most widely used tactics these days. From…

12 months ago

Hackers Actively Exploited 2 Ivanti Zero-Day to Execute Arbitrary Commands

Invati Connect Secure (ICS) and Ivanti Policy Secure Gateways have been discovered with two new vulnerabilities associated with authentication bypass…

1 year ago

Beware! Hackers Using YouTube Channels to Deliver Lumma Malware

Hackers use YouTube channels to deliver malware due to the huge user base of the platform. By using YouTube channels,…

1 year ago

Cacti Blind SQL Injection Flaw Enables Remote Code Execution

Cacti, the performance and fault management framework, has been discovered with a blind SQL injection vulnerability, which could reveal Cacti…

1 year ago