BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
CISA Warns AMI BMC Vulnerability Exploited in the Wild
/in General NewsCISA is urging federal agencies to patch a recent AMI BMC vulnerability and a half-a-decade-old bug in FortiOS by July 17.
The post CISA Warns AMI BMC Vulnerability Exploited in the Wild appeared first on SecurityWeek.
SecurityWeek – Read More
British Man Suspected of Being the Hacker IntelBroker Arrested, Charged
/in General News25-year-old Kai West, believed to be the hacker IntelBroker, was arrested in France and charged by the United States.
The post British Man Suspected of Being the Hacker IntelBroker Arrested, Charged appeared first on SecurityWeek.
SecurityWeek – Read More
Critical Cisco ISE Vulnerabilities Allow Remote Code Execution
/in General NewsTwo critical vulnerabilities in Cisco ISE could allow remote attackers to execute arbitrary code with root privileges.
The post Critical Cisco ISE Vulnerabilities Allow Remote Code Execution appeared first on SecurityWeek.
SecurityWeek – Read More
Cyber Criminals Exploit Open-Source Tools to Compromise Financial Institutions Across Africa
/in General NewsCybersecurity researchers are calling attention to a series of cyber attacks targeting financial organizations across Africa since at least July 2023 using a mix of open-source and publicly available tools to maintain access.
Palo Alto Networks Unit 42 is tracking the activity under the moniker CL-CRI-1014, where “CL” refers to “cluster” and “CRI” stands for “criminal motivation.”
It’s suspected
The Hacker News – Read More
Protecting Business Data From Unauthorized Encryption Threats
/in General NewsYour business operates in an online environment where unauthorized encryption of data isn’t just possible, it’s probable. The…
Hackread – Latest Cybersecurity, Hacking News, Tech, AI & Crypto – Read More
CISA Adds 3 Flaws to KEV Catalog, Impacting AMI MegaRAC, D-Link, Fortinet
/in General NewsThe U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Wednesday added three security flaws, each impacting AMI MegaRAC, D-Link DIR-859 router, and Fortinet FortiOS, to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation.
The list of vulnerabilities is as follows –
CVE-2024-54085 (CVSS score: 10.0) – An authentication bypass by spoofing
The Hacker News – Read More
Critical Citrix NetScaler Flaw Exploited as Zero-Day
/in General NewsCitrix has released patches for a critical vulnerability in NetScaler ADC and NetScaler Gateway exploited as a zero-day.
The post Critical Citrix NetScaler Flaw Exploited as Zero-Day appeared first on SecurityWeek.
SecurityWeek – Read More
Charming Kitten APT Tries Spying on Israeli Cybersecurity Experts
/in General NewsIsrael’s cyber pros are having to put theory into practice, as a notorious nation-state APT sponsored by Iran targets them with spear-phishing attacks.
darkreading – Read More
WhatsApp Adds AI-Powered Message Summaries for Faster Chat Previews
/in General NewsPopular messaging platform WhatsApp has added a new artificial intelligence (AI)-powered feature that leverages its in-house solution Meta AI to summarize unread messages in chats.
The feature, called Message Summaries, is currently rolling out in the English language to users in the United States, with plans to bring it to other regions and languages later this year.
It “uses Meta AI to
The Hacker News – Read More
‘They’re Not Breathing’: Inside the Chaos of ICE Detention Center 911 Calls
/in General NewsRecords of hundreds of emergency calls from ICE detention centers obtained by WIRED—including audio recordings—show a system inundated by life-threatening incidents, delayed treatment, and overcrowding.
Security Latest – Read More