Hackers Target Selenium Grid Servers for Proxyjacking and Cryptomining Attacks

Threat actors are infecting publicly exposed Selenium Grid servers to utilize victims’ internet bandwidth for cryptomining, proxyjacking, and potentially more harmful activities.

Cyware News – Latest Cyber News – ​Read More

Data Stolen in Ransomware Attack That Hit Seattle Airport

The Port of Seattle, which operates the SEA Airport, has confirmed that the August outage was the result of a ransomware attack.

The post Data Stolen in Ransomware Attack That Hit Seattle Airport appeared first on SecurityWeek.

SecurityWeek – ​Read More

Hacker Claims Breach of UK’s Experience Engine, Data Sold Online

A hacker known as IntelBroker claims to have breached the UK-based company Experience Engine, allegedly exposing sensitive data.…

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Windows Vulnerability Abused Braille “Spaces” in Zero-Day Attacks

A recently patched Windows vulnerability, identified as CVE-2024-43461, was exploited by the Void Banshee APT hacking group in zero-day attacks to install information-stealing malware.

Cyware News – Latest Cyber News – ​Read More

Ivanti CSA Vulnerability Exploited in Attacks Days After DIsclosure

The Ivanti Cloud Service Appliance vulnerability CVE-2024-8190 has been exploited in the wild, with attacks starting just days after disclosure.

The post Ivanti CSA Vulnerability Exploited in Attacks Days After DIsclosure appeared first on SecurityWeek.

SecurityWeek – ​Read More

SolarWinds Patches Critical Vulnerability in Access Rights Manager

SolarWinds has announced patches for a critical-severity remote code execution vulnerability in Access Rights Manager.

The post SolarWinds Patches Critical Vulnerability in Access Rights Manager appeared first on SecurityWeek.

SecurityWeek – ​Read More

Applications are Open for IoT Device Cyber Certifiers

The FCC is seeking volunteers to serve as administrators for a new cybersecurity labeling program, allowing consumers to identify products less vulnerable to cyberattacks.

Cyware News – Latest Cyber News – ​Read More

Python Libraries Exploited for Malicious Intent

A recent report by Xavier Mertens, a Senior ISC Handler and cybersecurity consultant, highlights a concerning trend where cybercriminals are increasingly using legitimate Python libraries for malicious activities.

Cyware News – Latest Cyber News – ​Read More

WordPress to Require Two-Factor Authentication for Plugin Developers

WordPress will require two-factor authentication for plugin developers starting October 1, 2024. This mandate will also apply to theme authors. The organization aims to enhance security by preventing hijacked accounts from spreading malicious code.

Cyware News – Latest Cyber News – ​Read More

Irish Data Protection Regulator to Investigate Google AI

Ireland’s data protection authorities are investigating Google’s AI model to ensure compliance with GDPR. The Irish Data Protection Commission (DPC) is leading the inquiry into Google Ireland under Section 110 of the Data Protection Act 2018.

Cyware News – Latest Cyber News – ​Read More