.:: CHASLES CORP. ::. .:: CHASLES CORP. ::.
  • About Us
    • History
    • Our Team
    • News
    • Join Us
    • Portfolio
  • Cyber Defense
    • Nexusguard
    • On demand
  • Cyber X
    • Fortinet
    • Employee Awareness Traininig
    • Breach Automation Platform
    • Automated Pentesting
    • Cyber X Services
      • Audit and Compliance
      • Remediation Services
      • Executive Protection
      • Advisory and Consultancy
  • IT
    • Integrify
    • Oracle
    • IT Solutions and Services
    • Software Development
  • Telcos and ISP Solutions
    • Sandvine
    • Boostedge
      • OverSea
      • PetaCache
      • Atlas
  • Education
.:: CHASLES CORP. ::.
  • About Us
    • History
    • Our Team
    • News
    • Join Us
    • Portfolio
  • Cyber Defense
    • Nexusguard
    • On demand
  • Cyber X
    • Fortinet
    • Employee Awareness Traininig
    • Breach Automation Platform
    • Automated Pentesting
    • Cyber X Services
      • Audit and Compliance
      • Remediation Services
      • Executive Protection
      • Advisory and Consultancy
  • IT
    • Integrify
    • Oracle
    • IT Solutions and Services
    • Software Development
  • Telcos and ISP Solutions
    • Sandvine
    • Boostedge
      • OverSea
      • PetaCache
      • Atlas
  • Education
Cyware Feed
malware-peddlers-experimenting-with-bpl-sideloading-and-masking-malicious-payloads-as-pgp-keys
_ 29 June 2024_ _ 0 Comments

Malware Peddlers Experimenting with BPL Sideloading and Masking Malicious Payloads as PGP Keys

The campaign involves a Bollywood pirate movie download site leading to a Bunny content delivery platform, which then points to a ZIP file. Inside the ZIP file, there is another password-protected ZIP file with a text file containing the password.

LEARN MORE ♥12
Cyware Feed
vanna-ai-prompt-injection-vulnerability-enables-rce
_ 28 June 2024_ _ 0 Comments

Vanna AI Prompt Injection Vulnerability Enables RCE

The Vanna AI library has been found to have a vulnerability (CVE-2024-5565) that could allow for remote code execution (RCE) due to a prompt injection issue related to the Plotly script.

LEARN MORE ♥9
Cyware Feed
no-patches-for-hospital-temperature-monitors’-critical-flaws
_ 28 June 2024_ _ 0 Comments

No Patches for Hospital Temperature Monitors’ Critical Flaws

Researchers at Nozomi Networks uncovered four vulnerabilities in Sensor Net Connect and three flaws in the Thermoscan IP desktop application, both made by a division of French firm Proges Plus.

LEARN MORE ♥11
Cyware Feed
poc-exploit-for-critical-fortra-filecatalyst-flaw-published
_ 28 June 2024_ _ 0 Comments

PoC Exploit for Critical Fortra FileCatalyst Flaw Published

The vulnerability allows attackers to create administrative user accounts, modify and delete data in the application database, and potentially gain full control of vulnerable systems.

LEARN MORE ♥12
Cyware Feed
malicious-npm-package-targets-aws-users-to-deploy-backdoor
_ 28 June 2024_ _ 0 Comments

Malicious NPM Package Targets AWS Users to Deploy Backdoor

ReversingLabs researchers discovered a suspicious package on npm called legacyreact-aws-s3-typescript. They found that the package contained a post-install script that downloaded and executed a simple backdoor.

LEARN MORE ♥11
Cyware Feed
korean-telco-allegedly-infected-around-600,000-p2p-users-with-malware
_ 28 June 2024_ _ 0 Comments

Korean Telco Allegedly Infected Around 600,000 P2P Users with Malware

South Korean telco KT has been accused of purposely infecting customers with malware as a result of excessive use of peer-to-peer (P2P) downloading tools. Around 600,000 users of online storage services have reportedly been affected.

LEARN MORE ♥11
Cyware Feed
novel-snowblind-malware-targets-banking-customers-in-southeast-asia
_ 28 June 2024_ _ 0 Comments

Novel Snowblind Malware Targets Banking Customers in Southeast Asia

Snowblind is effective on all modern Android devices and primarily targets banking apps. It avoids detection by modifying the app and exploiting the Linux kernel’s seccomp feature to control the app’s system calls.

LEARN MORE ♥9
Cyware Feed
phantom-secrets:-undetected-secrets-expose-major-corporations
_ 28 June 2024_ _ 0 Comments

Phantom Secrets: Undetected Secrets Expose Major Corporations

Major secrets, including cloud environment credentials, internal infrastructures, and telemetry platforms, have been found exposed on the internet due to Git-based processes and Source Code Management (SCM) platforms behavior.

LEARN MORE ♥8
Cyware Feed
update:-moveit-transfer-vulnerability-targeted-amid-disclosure-drama
_ 28 June 2024_ _ 0 Comments

Update: MOVEit Transfer Vulnerability Targeted Amid Disclosure Drama

The non-profit cybersecurity organization, the Shadowserver Foundation, has observed exploitation attempts against CVE-2024-5806. They noted that the exploitation began soon after the vulnerability details were made public.

LEARN MORE ♥8
Cyware Feed
chinese-cyberspies-employ-ransomware-in-attacks-for-diversion
_ 27 June 2024_ _ 0 Comments

Chinese Cyberspies Employ Ransomware in Attacks for Diversion

The adoption of ransomware in cyberespionage attacks helps adversaries blur the lines between APT and cybercriminal activity, leading to potential misattribution or concealing the true nature of the operation.

LEARN MORE ♥10
  • 1
  • 2
  • 3
  • …
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • …
  • 486
  • 487
  • 488
Recent Posts
  • Supporting Women in STEM With SWE: Voting, Advocacy, and More
  • SWE Diverse Podcast Ep 285: Thriving in Engineering While Living With Disabilities
  • 5 Things to Do Right After WE Annual Conference
Categories
  • Cyware Feed
  • Uncategorized