Tag: zero-day
-
Hackers Probing Newly Disclosed Fortinet Zero-Day
Mandiant Says High-Severity Flaw Could Give Attackers Remote Unauthenticated Access. Researchers at Mandiant say a new threat cluster, first observed … First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/hackers-probing-newly-disclosed-fortinet-zero-day-a-26624
-
North Korean APT Exploited IE Zero Day In Supply Chain Attack
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36494/North-Korean-APT-Exploited-IE-Zero-Day-In-Supply-Chain-Attack.html
-
4 Ways to Address Zero-Days in AI/ML Security
As the unique challenges of AI zero-days emerge, the approach to managing the accompanying risks needs to follow traditional security best practices b… First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/4-ways-address-zero-days-ai-ml-security
-
North Korean Hackers Exploited Chrome Zero-Day for Cryptocurrency Theft
The Lazarus APT created a deceptive website that exploited a Chrome zero-day to install malware and steal cryptocurrency. The post North Korean Hacker… First seen on securityweek.com Jump to article: www.securityweek.com/north-korean-hackers-exploited-chrome-zero-day-for-cryptocurrency-theft/
-
New Fortinet Zero-Day Exploited for Months Before Patch
A Fortinet zero-day tracked as CVE-2024-47575 and named FortiJump has been exploited since at least June 2024. The post New Fortinet Zero-Day Exploite… First seen on securityweek.com Jump to article: www.securityweek.com/new-fortinet-zero-day-exploited-for-months-before-patch-release/
-
The Rise of Zero-Day Vulnerabilities: Why Traditional Security Solutions Fall Short
In recent years, the number and sophistication of zero-day vulnerabilities have surged, posing a critical threat to organizations of all sizes. A zero… First seen on thehackernews.com Jump to article: thehackernews.com/2024/10/rise-of-zero-day-vulnerabilities.html
-
Samsung zero-day flaw actively exploited in the wild
Google’s Threat Analysis Group (TAG) researchers warn of a Samsung zero-day vulnerability that is exploited in the wild. Google’s Threat Analysis Grou… First seen on securityaffairs.com Jump to article: securityaffairs.com/170119/security/samsung-zero-day-activey-exploited.html
-
Fortinet Confirms Zero-Day Exploit Targeting FortiManager Systems
Fortinet confirms zero-day exploits hitting critical (CVSS severity score 9.8/10) remote code execution bug in the FortiManager platform. The post For… First seen on securityweek.com Jump to article: www.securityweek.com/fortinet-confirms-zero-day-exploit-targeting-fortimanager-systems/
-
Hackers Probing Newly Disclosed Fortinet Zero Day
Mandiant Says High-Severity Flaw Could Give Attackers Remote Unauthenticated Access. Researchers at Mandiant say a new threat cluster first observed J… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/hackers-probing-newly-disclosed-fortinet-zero-day-a-26624
-
Usefree-Fehler – Kritischer Zero-Day-Angriff auf Firefox und Thunderbird
First seen on security-insider.de Jump to article: www.security-insider.de/mozilla-aktualisiert-firefox-thunderbird-sicherheitsluecken-geschlossen-a-a408115998d292f583d76d1cbf469d98/
-
Lazarus hackers used fake DeFi game to exploit Google Chrome zero-day
The North Korean Lazarus hacking group exploited a Google Chrome zero-day tracked as CVE-2024-4947 through a fake decentralized finance (DeFi) game ta… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/lazarus-hackers-used-fake-defi-game-to-exploit-google-chrome-zero-day/
-
Fortinet warns of new critical FortiManager flaw used in zero-day attacks
Fortinet publicly disclosed today a critical FortiManager API vulnerability, tracked as CVE-2024-47575, that was exploited in zero-day attacks to stea… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/fortinet-warns-of-new-critical-fortimanager-flaw-used-in-zero-day-attacks/
-
Hackers exploit 52 zero-days on the first day of Pwn2Own Ireland
On the first day of Pwn2Own Ireland, participants demonstrated 52 zero-day vulnerabilities across a range of devices, earning a total of $486,250 in c… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/hackers-exploit-52-zero-days-on-the-first-day-of-pwn2own-ireland/
-
Exploring the Transformative Potential of AI in Cybersecurity
By continuously learning from new data, ML models can adapt to evolving threat landscapes, making them invaluable in identifying zero-day vulnerabilit… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/10/exploring-the-transformative-potential-of-ai-in-cybersecurity/
-
Fortinet Discloses Actively Exploited Zero-Day
U.S. Federal Government Gives Agencies Three Weeks to Patch or Mitigate. Fortinet disclosed an actively exploited vulnerability in its centralized man… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/fortinet-discloses-actively-exploited-zero-day-a-26602
-
Nation-State Attackers Exploiting Ivanti CSA Flaws for Network Infiltration
A suspected nation-state adversary has been observed weaponizing three security flaws in Ivanti Cloud Service Appliance (CSA) a zero-day to perform a … First seen on thehackernews.com Jump to article: thehackernews.com/2024/10/nation-state-attackers-exploiting.html
-
New AI Tool To Discover 0-Days At Large Scale With A Click Of A Button
Vulnhuntr, a static code analyzer using large language models (LLMs), discovered over a dozen zero-day vulnerabilities in popular open-source AI proje… First seen on gbhackers.com Jump to article: gbhackers.com/ai-0-day-discovery-tool/
-
FortiJump: Yet Another Critical Fortinet 0-Day RCE
First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/10/fortinet-fortijump-0day-richixbw/
-
Threat Actors Exploit Zero Days Within 5 Days, Says Mandiant
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36491/Threat-Actors-Exploit-Zero-Days-Within-5-Days-Says-Mandiant.html
-
Zero-day exploits swelled in 2023: Mandiant
First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/zero-day-exploits-rise-mandiant/730265/
-
Google Warns of Samsung Zero-Day Exploited in the Wild
A zero-day vulnerability in Samsung mobile processors has been abused as part of an exploit chain for arbitrary code execution. The post Google Warns … First seen on securityweek.com Jump to article: www.securityweek.com/google-warns-of-samsung-zero-day-exploited-in-the-wild/
-
Serious Adversaries Circle Ivanti CSA Zero-Day Flaws
Suspected nation-state actors are spotted stringing together three different zero-days in the Ivanti Cloud Services Application to gain persistent acc… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/serious-adversaries-circle-ivanti-csa-flaws
-
Researchers Debut AI Tool That Helps Detect Zero-Days
Vulnerability Tool Detected Flaws in OpenAI and Nvidia APIs Used in GitHub Projects. Security researchers have developed an AI tool that can detect re… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/researchers-debut-ai-tool-that-helps-detect-zero-days-a-26575
-
North Korea-linked APT37 exploited IE zero-day in a recent attack
Tags: attack, exploit, group, Internet, korea, north-korea, supply-chain, threat, vulnerability, zero-dayNorth Korea-linked group APT37 exploited an Internet Explorer zero-day vulnerability in a supply chain attack. A North Korea-linked threat actor, trac… First seen on securityaffairs.com Jump to article: securityaffairs.com/169983/apt/north-korea-apt37-ie-zero-day.html
-
Hackers targeted Android users by exploiting zero-day bug in Qualcomm chips
First seen on techcrunch.com Jump to article: techcrunch.com/2024/10/09/hackers-were-targeting-android-users-with-qualcomm-zero-day/
-
North Korean Hackers Exploit Zero-Day Flaw (CVE-2024-38178) in >>Operation Code on Toast<<
A joint report by AhnLab Security Emergency response Center (ASEC) and the National Cyber Security Center (NCSC) has revealed a new zero-day vulnerabi… First seen on securityonline.info Jump to article: securityonline.info/north-korean-hackers-exploit-zero-day-flaw-cve-2024-38178-in-operation-code-on-toast/
-
Android-Geräte in Gefahr: Zero-Day-Lücke in Qualcomm-Chips wird aktiv ausgenutzt
First seen on golem.de Jump to article: www.golem.de/news/android-geraete-in-gefahr-zero-day-luecke-in-qualcomm-chips-wird-aktiv-ausgenutzt-2410-189708.html
-
Firefox Zero-Day Under Attack: Update Your Browser Immediately
Mozilla has revealed that a critical security flaw impacting Firefox and Firefox Extended Support Release (ESR) has come under active exploitation in … First seen on thehackernews.com Jump to article: thehackernews.com/2024/10/mozilla-warns-of-active-exploitation-in.html
-
Critical Mozilla Firefox Zero-Day Allows Code Execution
First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/critical-mozilla-firefox-zero-day-code-execution
-
North Korean APT Exploited IE Zero-Day in Supply Chain Attack
A Pyongyang-aligned APT was caught exploiting a recent zero-day in Internet Explorer in a supply chain attack. The post North Korean APT Exploited IE … First seen on securityweek.com Jump to article: www.securityweek.com/north-korean-apt-exploited-ie-zero-day-in-supply-chain-attack/

