Hackers Actively Exploiting Big-IP and Citrix Vulnerabilities

Experts issued security alerts concerning the ongoing exploitation of Big-IP (CVE-2023-46747, CVE-2023-46748) and Citrix (CVE-2023-4966) vulnerabilities. The publicly available Proof of Concepts (POCs) for these vulnerabilities were rapidly circulated in cybercrime forums. Over 20,000 “Netscaler” instances and 1,000 “Big IP” instances are available online. These systems might be attractive targets for attackers and might be […]

The post Hackers Actively Exploiting Big-IP and Citrix Vulnerabilities appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

November 10, 2023
Read More >>

Iranian APT Hackers Attacking Education & Tech Sectors to Steal Sensitive Data

Cybersecurity researchers link attackers to the Iranian-backed APT group “Agonizing Serpens,” which has upgraded its capabilities and uses various tools to bypass security measures. Hackers target and steal sensitive data for various reasons, including: They may sell the stolen data on the black market, use it for blackmail, or exploit it for fraudulent activities. Unit […]

The post Iranian APT Hackers Attacking Education & Tech Sectors to Steal Sensitive Data appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

November 8, 2023
Read More >>

QNAP OS Command Injection Vulnerability Let Attackers Execute Malicious Commands

Two critical OS command injection flaws have been discovered in multiple QNAP products, which include QTS, Multimedia Console, Media Streaming add-on, QuTS Hero, and QuTScloud.  These vulnerabilities existed in the QTS operating system and applications on network-attached storage (NAS) devices, which are used to store many sensitive data.  Hence, a command injection flaw on a […]

The post QNAP OS Command Injection Vulnerability Let Attackers Execute Malicious Commands appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

November 8, 2023
Read More >>

DarkGate, Which Abused Microsoft Teams, Now Leverages MSI Files

A new wave of cyberattacks has been discovered by Netskope Threat Labs, involving the use of SharePoint as a delivery platform for the notorious DarkGate malware.  This alarming trend is driven by an attack campaign that exploits vulnerabilities in Microsoft Teams and SharePoint, posing a serious risk to online security. DarkGate: A Versatile Threat DarkGate, […]

The post DarkGate, Which Abused Microsoft Teams, Now Leverages MSI Files appeared first on GBHackers on Security | #1 Globally Trusted Cyber Security News Platform.

November 3, 2023
Read More >>