Critical RCE Vulnerability Discovered in Ollama AI Infrastructure Tool

Cybersecurity researchers have detailed a now-patch security flaw affecting the Ollama open-source artificial intelligence (AI) infrastructure platform that could be exploited to achieve remote code execution.
Tracked as CVE-2024-37032, the vulnerability has been codenamed Probllama by cloud security firm Wiz. Following responsible disclosure on May 5, 2024, the issue was addressed in version

The Hacker News – ​Read More

The NYSE’s $10M Wake-up Call

The settlement between the SEC and the owner of the New York Stock Exchange is a critical reminder of the vulnerabilities within financial institutions’ cybersecurity frameworks as well as the importance of regulatory oversight.

darkreading – ​Read More

LivaNova USA Discloses Data Breach Impacting 130,000 Individuals

LivaNova USA says the personal and medical information of 130,000 individuals was compromised in an October 2023 data breach.

The post LivaNova USA Discloses Data Breach Impacting 130,000 Individuals appeared first on SecurityWeek.

SecurityWeek – ​Read More

Push Notification Fatigue Leads to LA County Health Department Data Breach

The Los Angeles County Department of Health Services discloses a data breach caused by push notification spamming attack.

The post Push Notification Fatigue Leads to LA County Health Department Data Breach appeared first on SecurityWeek.

SecurityWeek – ​Read More

LockBit Ransomware Claims 33 TB of US Federal Reserve Data for Ransom

LockBit ransomware claims to hold 33 TB of data from the US Federal Reserve for ransom. Hackread.com investigates, reaching out to CISA for comments on the breach and ongoing negotiations. Stay updated!

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Vietnamese Members of FIN9 Hacking Group Charged in US

The US has announced charges against four Vietnamese nationals for hacking businesses and causing $71 million in losses.

The post Vietnamese Members of FIN9 Hacking Group Charged in US appeared first on SecurityWeek.

SecurityWeek – ​Read More

Mailcow Patches Critical XSS and File Overwrite Flaws – Update NOW

Mailcow email servers faced critical vulnerabilities (CVE-2024-31204 and CVE-2024-30270) allowing potential remote code execution. Update to Mailcow 2024-04 (Moopril Update) to patch the security holes and keep your email server safe.

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Ease the Burden with AI-Driven Threat Intelligence Reporting

Learn about critical threats that can impact your organization and the bad actors behind them from Cybersixgill’s threat experts. Each story shines a light on underground activities, the threat actors involved, and why you should care, along with what you can do to mitigate risk. 
Cybersecurity professionals are facing unprecedented challenges as they strive to manage increasing workloads

The Hacker News – ​Read More

US Sanctions 12 Kaspersky Executives 

The US has imposed sanctions on 12 individuals who have leadership roles at Kaspersky in Russia and the UK.

The post US Sanctions 12 Kaspersky Executives  appeared first on SecurityWeek.

SecurityWeek – ​Read More

Bitdefender VPN vs NordVPN (2024): Which VPN Is the Best?

Which is better, Bitdefender VPN or NordVPN? Use our guide to help you compare pricing, features and more.

Security | TechRepublic – ​Read More