JetBrains Warns of New TeamCity Authentication Bypass Vulnerability

The vulnerability, tracked as CVE-2024-23917, affects all versions of TeamCity On-Premises from 2017.1 through 2023.11.2 and can lead to remote code execution attacks without requiring user interaction.

Cyware News – Latest Cyber News – ​Read More

Malicious Excel File Drops Python Info-stealer

Fortinet’s FortiGuard Labs uncovers a Python-based info-stealer distributed via malicious Excel documents, showcasing cybercriminals’ innovative tactics. Exploiting legacy Excel 4.0 macros, the attack scans devices for sensitive data, employing sophisticated evasion techniques for stealthy data exfiltration. For safety, users are advised to disable macros in Office documents.

Cyware News – Latest Cyber News – ​Read More

Critical JetBrains TeamCity On-Premises Flaw Exposes Servers to Takeover – Patch Now

JetBrains is alerting customers of a critical security flaw in its TeamCity On-Premises continuous integration and continuous deployment (CI/CD) software that could be exploited by threat actors to take over susceptible instances.
The vulnerability, tracked as CVE-2024-23917, carries a CVSS rating of 9.8 out of 10, indicative of its severity.
“The vulnerability may enable an unauthenticated

The Hacker News – ​Read More

Meta Says It Will Label AI-Generated Images on Facebook and Instagram

Facebook and Instagram users will start seeing labels on AI-generated images that appear on their social media feeds, as the tech industry aims to sort between what’s real and not.

The post Meta Says It Will Label AI-Generated Images on Facebook and Instagram appeared first on SecurityWeek.

SecurityWeek – ​Read More

Verizon Employee Data Exposed in Insider Threat Incident

Tens of thousands of workers are effected by a fellow employee dipping into files that include everything from SSNs and names to union status and compensation data.

darkreading – ​Read More

IONIX ​​Completes $42M Financing Round to Expand Threat Exposure Management Across the Entire Attack Surface

Post Content

darkreading – ​Read More

Critical Bugs in Canon Small Office Printers Allow Code Execution, DDoS

A grouping of serious printer bugs, unveiled at last summer’s Pwn2Own, were patchless for months, but are finally fixed now.

darkreading – ​Read More