.:: CHASLES CORP. ::. .:: CHASLES CORP. ::.
  • A propos de nous
    • Notre histoire
    • Notre equipe
    • Infos
    • Rejoignez-nous
    • Portfolio
  • Cyber Defense
    • Nexusguard
    • On demand
  • Cyber X
    • Fortinet
    • Employee Awareness Traininig
    • Breach Automation Platform
    • Automated Pentesting
    • Cyber X Services
      • Audit et conformité
      • Remediation Services
      • Executive Protection
      • Advisory and Consultancy
  • IT
    • Integrify
    • Oracle
    • IT Solutions and Services
    • Software Development
  • Telcos and ISP Solutions
    • Sandvine
    • Boostedge
      • OverSea
      • PetaCache
      • Atlas
  • Education
.:: CHASLES CORP. ::.
  • A propos de nous
    • Notre histoire
    • Notre equipe
    • Infos
    • Rejoignez-nous
    • Portfolio
  • Cyber Defense
    • Nexusguard
    • On demand
  • Cyber X
    • Fortinet
    • Employee Awareness Traininig
    • Breach Automation Platform
    • Automated Pentesting
    • Cyber X Services
      • Audit et conformité
      • Remediation Services
      • Executive Protection
      • Advisory and Consultancy
  • IT
    • Integrify
    • Oracle
    • IT Solutions and Services
    • Software Development
  • Telcos and ISP Solutions
    • Sandvine
    • Boostedge
      • OverSea
      • PetaCache
      • Atlas
  • Education
Cyware Feed
storm-0501-expands-ransomware-attacks-to-hybrid-cloud-environments
_ 30 septembre 2024_ _ 0 Comments

Storm-0501 Expands Ransomware Attacks to Hybrid Cloud Environments

Microsoft has detected Storm-0501 using Cobalt Strike for lateral movement across networks and deploying Embargo ransomware on victim organizations in hybrid cloud setups.

LIRE PLUS ♥19
Cyware Feed
critical-watchguard-vulnerabilities-discovered:-cve-2024-6592-and-cve-2024-6593
_ 30 septembre 2024_ _ 0 Comments

Critical WatchGuard Vulnerabilities Discovered: CVE-2024-6592 and CVE-2024-6593

Two critical vulnerabilities, CVE-2024-6592 and CVE-2024-6593, have been found in WatchGuard’s Authentication Gateway and Single Sign-On Client software by cybersecurity firm RedTeam Pentesting GmbH.

LIRE PLUS ♥17
Cyware Feed
unraveling-sparkling-pisces’s-tool-set:-klogexe-and-fpspy
_ 30 septembre 2024_ _ 0 Comments

Unraveling Sparkling Pisces’s Tool Set: KLogEXE and FPSpy

KLogEXE is a C++ keylogger while FPSpy is a backdoor designed to collect system information and exfiltrate data from compromised devices. Both malware strains are primarily being distributed through spear-phishing emails.

LIRE PLUS ♥14
Cyware Feed
unpatched-sqli-flaw-in-ti-woocommerce-wishlist-threatens-100,000+-sites
_ 30 septembre 2024_ _ 0 Comments

Unpatched SQLi Flaw in TI WooCommerce Wishlist Threatens 100,000+ Sites

A critical security flaw, CVE-2024-43917, with a CVSS score of 9. 3, has been found in the popular WordPress plugin TI WooCommerce Wishlist, putting over 100,000 sites at risk of SQL injection attacks.

LIRE PLUS ♥14
Cyware Feed
dcrat-targets-users-with-html-smuggling
_ 30 septembre 2024_ _ 0 Comments

DCRat Targets Users with HTML Smuggling

A new HTML smuggling campaign is targeting Russian-speaking users, distributing DCRat malware. This marks the first time the malware has been deployed using this method, unlike common delivery methods like compromised sites or phishing emails.

LIRE PLUS ♥15
Cyware Feed
first-mobile-crypto-drainer-found-on-google-play
_ 30 septembre 2024_ _ 0 Comments

First Mobile Crypto Drainer Found on Google Play

The malicious app, called WalletConnect, amassed over 10,000 downloads and stole around $70,000 in cryptocurrency from Android users before being removed from the Google Play Store.

LIRE PLUS ♥17
Cyware Feed
nist-proposes-barring-some-of-the-most-nonsensical-password-rules
_ 30 septembre 2024_ _ 0 Comments

NIST Proposes Barring Some of the Most Nonsensical Password Rules

NIST is seeking public feedback on the draft guidelines, which can be submitted via email until October 7. The goal is to promote sensible password practices that enhance security without burdening users or compromising their online identity.

LIRE PLUS ♥17
Cyware Feed
watering-hole-attack-on-kurdish-sites-distributing-malicious-apks-and-spyware
_ 30 septembre 2024_ _ 0 Comments

Watering Hole Attack on Kurdish Sites Distributing Malicious APKs and Spyware

A watering hole attack targeted Kurdish websites, distributing malicious APKs and spyware, compromising 25 sites for over a year. French cybersecurity firm Sekoia uncovered the campaign called SilentSelfie, delivering various info-stealers.

LIRE PLUS ♥18
Cyware Feed
hpe-patches-three-critical-security-holes-in-aruba-papi
_ 28 septembre 2024_ _ 0 Comments

HPE Patches Three Critical Security Holes in Aruba PAPI

HPE has released patches for three critical security vulnerabilities in Aruba’s networking access points, which could allow attackers to run code on the systems by sending specially crafted packets to UDP port 8211.

LIRE PLUS ♥17
Cyware Feed
bbtok-targeting-brazil-using-the-appdomain-manager-injection-technique
_ 28 septembre 2024_ _ 0 Comments

BBTok Targeting Brazil Using the AppDomain Manager Injection Technique

The Brazilian-targeted threat BBTok has a complex infection chain that starts with an email containing an ISO image. The malware compiles C# code directly on the infected machine and uses the AppDomain Manager Injection technique.

LIRE PLUS ♥15
  • 1
  • 2
  • 3
  • 4
  • 5
  • …
  • 486
  • 487
  • 488
Articles récents
  • Supporting Women in STEM With SWE: Voting, Advocacy, and More
  • SWE Diverse Podcast Ep 285: Thriving in Engineering While Living With Disabilities
  • 5 Things to Do Right After WE Annual Conference
Catégories
  • Cyware Feed
  • Uncategorized