CISA Alerts on Active Exploitation of Flaws in Fortinet, Ivanti, and Nice Products

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday placed three security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation.
The vulnerabilities added are as follows –

CVE-2023-48788 (CVSS score: 9.3) – Fortinet FortiClient EMS SQL Injection Vulnerability
CVE-2021-44529 (CVSS score: 9.8) – Ivanti

The Hacker News – ​Read More

Africa Tackles Online Disinformation Campaigns During Major Election Year

Cyber-disinformation campaigns targeting Africa have taken off in 2024, as 18 nations prepare to hold elections, and cybersecurity efforts are key to taming the threat.

darkreading – ​Read More

International Sting Takes Down Major Dark Web Marketplace “Nemesis Market”

By Waqas

Another day, another popular dark web marketplace bites the dust!

This is a post from HackRead.com Read the original post: International Sting Takes Down Major Dark Web Marketplace “Nemesis Market”

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Google’s New AI Search Results Promotes Sites Pushing Malware, Scams

Google’s new AI-powered ‘Search Generative Experience’ algorithms recommend scam sites that redirect visitors to unwanted Chrome extensions, fake iPhone giveaways, browser spam subscriptions, and tech support scams.

Cyware News – Latest Cyber News – ​Read More

Scammers Steal Millions From FTX, BlockFi Claimants

Customers of bankrupt crypto platform BlockFi have been targeted with a very convincing phishing email impersonating the platform, asking them to connect their wallet to complete the withdrawal of remaining funds.

Cyware News – Latest Cyber News – ​Read More

Sandworm-Linked Group Likely Knocked Down Ukrainian Internet Providers

Russian state-backed hackers are likely behind recent attacks on four Ukrainian internet providers, disrupting their operations for over a week. A group known as Solntsepek claimed responsibility for the incidents on its Telegram channel last week.

Cyware News – Latest Cyber News – ​Read More

Police Bust Multimillion-Dollar Holiday Fraud Gang

Police in Romania and Spain have struck a blow against a sophisticated cyber-fraud gang that tricked victims out of millions of dollars through fake ads and business email compromise (BEC) scams.

Cyware News – Latest Cyber News – ​Read More

Mitigating Third-Party Risk Requires a Collaborative, Thorough Approach

The issue can seem daunting, but most organizations have more agency and flexibility to deal with third-party risk than they think.

darkreading – ​Read More

New GEOBOX Tool Hijacks Raspberry Pi, Lets Hackers Fake Location

By Deeba Ahmed

New Dark Web Tool GEOBOX, sold for $700 on Telegram and underground forums, hijacks Raspberry Pi, allowing cybercriminals to fake locations and evade detection.

This is a post from HackRead.com Read the original post: New GEOBOX Tool Hijacks Raspberry Pi, Lets Hackers Fake Location

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Top Python Developers Hacked in Sophisticated Supply Chain Attack

Multiple Python developers get infected after downloading malware-packed clone of the popular tool Colorama.

The post Top Python Developers Hacked in Sophisticated Supply Chain Attack appeared first on SecurityWeek.

SecurityWeek – ​Read More