.:: CHASLES CORP. ::. .:: CHASLES CORP. ::.
  • A propos de nous
    • Notre histoire
    • Notre equipe
    • Infos
    • Rejoignez-nous
    • Portfolio
  • Cyber Defense
    • Nexusguard
    • On demand
  • Cyber X
    • Fortinet
    • Employee Awareness Traininig
    • Breach Automation Platform
    • Automated Pentesting
    • Cyber X Services
      • Audit et conformité
      • Remediation Services
      • Executive Protection
      • Advisory and Consultancy
  • IT
    • Integrify
    • Oracle
    • IT Solutions and Services
    • Software Development
  • Telcos and ISP Solutions
    • Sandvine
    • Boostedge
      • OverSea
      • PetaCache
      • Atlas
  • Education
.:: CHASLES CORP. ::.
  • A propos de nous
    • Notre histoire
    • Notre equipe
    • Infos
    • Rejoignez-nous
    • Portfolio
  • Cyber Defense
    • Nexusguard
    • On demand
  • Cyber X
    • Fortinet
    • Employee Awareness Traininig
    • Breach Automation Platform
    • Automated Pentesting
    • Cyber X Services
      • Audit et conformité
      • Remediation Services
      • Executive Protection
      • Advisory and Consultancy
  • IT
    • Integrify
    • Oracle
    • IT Solutions and Services
    • Software Development
  • Telcos and ISP Solutions
    • Sandvine
    • Boostedge
      • OverSea
      • PetaCache
      • Atlas
  • Education
Cyware Feed
malware-peddlers-experimenting-with-bpl-sideloading-and-masking-malicious-payloads-as-pgp-keys
_ 29 juin 2024_ _ 0 Comments

Malware Peddlers Experimenting with BPL Sideloading and Masking Malicious Payloads as PGP Keys

The campaign involves a Bollywood pirate movie download site leading to a Bunny content delivery platform, which then points to a ZIP file. Inside the ZIP file, there is another password-protected ZIP file with a text file containing the password.

LIRE PLUS ♥12
Cyware Feed
vanna-ai-prompt-injection-vulnerability-enables-rce
_ 28 juin 2024_ _ 0 Comments

Vanna AI Prompt Injection Vulnerability Enables RCE

The Vanna AI library has been found to have a vulnerability (CVE-2024-5565) that could allow for remote code execution (RCE) due to a prompt injection issue related to the Plotly script.

LIRE PLUS ♥9
Cyware Feed
no-patches-for-hospital-temperature-monitors’-critical-flaws
_ 28 juin 2024_ _ 0 Comments

No Patches for Hospital Temperature Monitors’ Critical Flaws

Researchers at Nozomi Networks uncovered four vulnerabilities in Sensor Net Connect and three flaws in the Thermoscan IP desktop application, both made by a division of French firm Proges Plus.

LIRE PLUS ♥11
Cyware Feed
poc-exploit-for-critical-fortra-filecatalyst-flaw-published
_ 28 juin 2024_ _ 0 Comments

PoC Exploit for Critical Fortra FileCatalyst Flaw Published

The vulnerability allows attackers to create administrative user accounts, modify and delete data in the application database, and potentially gain full control of vulnerable systems.

LIRE PLUS ♥12
Cyware Feed
malicious-npm-package-targets-aws-users-to-deploy-backdoor
_ 28 juin 2024_ _ 0 Comments

Malicious NPM Package Targets AWS Users to Deploy Backdoor

ReversingLabs researchers discovered a suspicious package on npm called legacyreact-aws-s3-typescript. They found that the package contained a post-install script that downloaded and executed a simple backdoor.

LIRE PLUS ♥11
Cyware Feed
korean-telco-allegedly-infected-around-600,000-p2p-users-with-malware
_ 28 juin 2024_ _ 0 Comments

Korean Telco Allegedly Infected Around 600,000 P2P Users with Malware

South Korean telco KT has been accused of purposely infecting customers with malware as a result of excessive use of peer-to-peer (P2P) downloading tools. Around 600,000 users of online storage services have reportedly been affected.

LIRE PLUS ♥11
Cyware Feed
novel-snowblind-malware-targets-banking-customers-in-southeast-asia
_ 28 juin 2024_ _ 0 Comments

Novel Snowblind Malware Targets Banking Customers in Southeast Asia

Snowblind is effective on all modern Android devices and primarily targets banking apps. It avoids detection by modifying the app and exploiting the Linux kernel’s seccomp feature to control the app’s system calls.

LIRE PLUS ♥9
Cyware Feed
phantom-secrets:-undetected-secrets-expose-major-corporations
_ 28 juin 2024_ _ 0 Comments

Phantom Secrets: Undetected Secrets Expose Major Corporations

Major secrets, including cloud environment credentials, internal infrastructures, and telemetry platforms, have been found exposed on the internet due to Git-based processes and Source Code Management (SCM) platforms behavior.

LIRE PLUS ♥8
Cyware Feed
update:-moveit-transfer-vulnerability-targeted-amid-disclosure-drama
_ 28 juin 2024_ _ 0 Comments

Update: MOVEit Transfer Vulnerability Targeted Amid Disclosure Drama

The non-profit cybersecurity organization, the Shadowserver Foundation, has observed exploitation attempts against CVE-2024-5806. They noted that the exploitation began soon after the vulnerability details were made public.

LIRE PLUS ♥8
Cyware Feed
chinese-cyberspies-employ-ransomware-in-attacks-for-diversion
_ 27 juin 2024_ _ 0 Comments

Chinese Cyberspies Employ Ransomware in Attacks for Diversion

The adoption of ransomware in cyberespionage attacks helps adversaries blur the lines between APT and cybercriminal activity, leading to potential misattribution or concealing the true nature of the operation.

LIRE PLUS ♥10
  • 1
  • 2
  • 3
  • …
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • …
  • 486
  • 487
  • 488
Articles récents
  • Supporting Women in STEM With SWE: Voting, Advocacy, and More
  • SWE Diverse Podcast Ep 285: Thriving in Engineering While Living With Disabilities
  • 5 Things to Do Right After WE Annual Conference
Catégories
  • Cyware Feed
  • Uncategorized