Keycloak Vulnerability Puts SAML Authentication at Risk

The vulnerability lies in Keycloak’s XMLSignatureUtil class, which incorrectly verifies SAML signatures, disregarding the vital “Reference” element that specifies the signed portion of the document.

Cyware News – Latest Cyber News – ​Read More

US DoJ Charged Two Men With Stealing and Laundering $230 Million Worth of Cryptocurrency

Two suspects, Malone Lam and Jeandiel Serrano, were arrested by the US Department of Justice for stealing and laundering over $230 million worth of cryptocurrency in Miami.

Cyware News – Latest Cyber News – ​Read More

Picus Security Raises $45M in Funding

Picus Security, a San Francisco, CA-based security validation company, raised $45M in funding. The round, which brought total funds raised to $80M, was led by Riverwood Capital, with participation from existing investor Earlybird Digital East Fund.

Cyware News – Latest Cyber News – ​Read More

Cybersecurity Products Conking Out After macOS Sequoia Update

macOS Sequoia updates are causing cybersecurity software failures and breaking network connectivity for many.

The post Cybersecurity Products Conking Out After macOS Sequoia Update appeared first on SecurityWeek.

SecurityWeek – ​Read More

Lumma Stealer Malware Campaign Exploits Fake CAPTCHA Pages

The Lumma Stealer malware is being distributed through deceptive human verification pages that trick Windows users into running malicious PowerShell commands, leading to sensitive information theft.

Cyware News – Latest Cyber News – ​Read More

SambaSpy RAT Targets Italian Users in a Unique Malware Campaign

This unique malware campaign stood out for its precise targeting of Italian victims, with checks implemented to ensure the system language was set to Italian before infecting the device.

Cyware News – Latest Cyber News – ​Read More

New PondRAT Malware Hidden in Python Packages Targets Software Developers

Threat actors with ties to North Korea have been observed using poisoned Python packages as a way to deliver a new malware called PondRAT as part of an ongoing campaign.
PondRAT, according to new findings from Palo Alto Networks Unit 42, is assessed to be a lighter version of POOLRAT (aka SIMPLESEA), a known macOS backdoor that has been previously attributed to the Lazarus Group and deployed in

The Hacker News – ​Read More

Chinese Hackers Exploit GeoServer Flaw to Target APAC Nations with EAGLEDOOR Malware

A suspected advanced persistent threat (APT) originating from China targeted a government organization in Taiwan, and possibly other countries in the Asia-Pacific (APAC) region, by exploiting a recently patched critical security flaw impacting OSGeo GeoServer GeoTools.
The intrusion activity, which was detected by Trend Micro in July 2024, has been attributed to a threat actor dubbed Earth Baxia

The Hacker News – ​Read More

China’s ‘Earth Baxia’ Spies Exploit Geoserver to Target APAC Orgs

The APT group uses spear-phishing and a vulnerability in a geospatial data-sharing server to compromise organizations in Taiwan, Japan, the Philippines, and South Korea.

darkreading – ​Read More

Hackers Claim Second Dell Data Breach in One Week

Another day, another claim of Dell data breach!

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More