BackBox News

Latest news and insights on Security

New Wi-Fi Authentication Bypass Flaws Expose Home, Enterprise Networks

A couple of Wi-Fi authentication bypass vulnerabilities found in open source software can expose enterprise and home networks to attacks.

The post New Wi-Fi Authentication Bypass Flaws Expose Home, Enterprise Networks appeared first on SecurityWeek.

SecurityWeek – ​Read More

Microsoft Warns of Exploited Exchange Server Zero-Day

Microsoft says a newly patched Exchange Server vulnerability (CVE-2024-21410) has been exploited in attacks.

The post Microsoft Warns of Exploited Exchange Server Zero-Day appeared first on SecurityWeek.

SecurityWeek – ​Read More

New Critical Microsoft Exchange Bug Exploited as Zero-Day

Discovered internally and tracked as CVE-2024-21410, this security flaw can let remote unauthenticated threat actors escalate privileges in NTLM relay attacks targeting vulnerable Microsoft Exchange Server versions.

Cyware News – Latest Cyber News – ​Read More

France Uncovers Russian Disinformation Campaign

The network of disinformation websites, dubbed “Portal Kombat,” reproduces content from pro-Russian social media accounts and news agencies, using automation and machine translation to disseminate the content.

Cyware News – Latest Cyber News – ​Read More

Critical Exchange Server Flaw (CVE-2024-21410) Under Active Exploitation

Critical Exchange Server Flaw (CVE-2024-21410) Under Active Exploitation

Microsoft on Wednesday acknowledged that a newly disclosed critical security flaw in Exchange Server has been actively exploited in the wild, a day after it released fixes for the vulnerability as part of its Patch Tuesday updates.
Tracked as CVE-2024-21410 (CVSS score: 9.8), the issue has been described as a case of privilege escalation impacting the Exchange Server.
“An attacker

The Hacker News – ​Read More

Cisco Announces It is Laying Off Thousands of Workers

About 5 percent of Cisco’s global workforce will be affected by layoffs, the Silicon Valley-based company said.

The post Cisco Announces It is Laying Off Thousands of Workers appeared first on SecurityWeek.

SecurityWeek – ​Read More

Microsoft, OpenAI: Nation-States Are Weaponizing AI in Cyberattacks

Microsoft, OpenAI: Nation-States Are Weaponizing AI in Cyberattacks

It’s not theoretical anymore: the world’s major powers are working with large language models to enhance their offensive cyber operations.

darkreading – ​Read More

Prudential Files Voluntary Breach Notice With SEC

Prudential Files Voluntary Breach Notice With SEC

The finance services giant says it was hacked — and reported the incident proactively before SEC requirements mandated it. It could be an anti-extortion move, or merely a brand protection effort.

darkreading – ​Read More

Menlo Security report: Cybersecurity risks surge with AI adoption

Menlo Security report: Cybersecurity risks surge with AI adoption

Menlo Security’s latest report reveals urgent cybersecurity challenges and strategies for businesses integrating generative AI like ChatGPT into their daily operations.Read More

Security News | VentureBeat – ​Read More

IBM, ISC2 Offer Cybersecurity Certificate

The entry-level IBM and ISC2 Cybersecurity Specialist Professional Certificate takes four months to complete.

Security | TechRepublic – ​Read More

BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.