Tag: zero-day
-
Three new Ivanti CSA zero-day actively exploited in attacks
Software company Ivanti released security patches for three new CSA zero-day vulnerabilities actively exploited in attacks. Ivanti warned of three new… First seen on securityaffairs.com Jump to article: securityaffairs.com/169553/hacking/ivanti-csa-zero-days-actively-exploited.html
-
Four zero-days fixed for September Patch Tuesday
Most corrections this month focus on the Windows OS, but enterprises that rely on SQL Server or SharePoint should prioritize deploying the security up… First seen on techtarget.com Jump to article: www.techtarget.com/searchwindowsserver/news/366610256/Four-zero-days-fixed-for-September-Patch-Tuesday
-
Zero-day vulnerability rolled back previous patches
On Patch Tuesday, Microsoft addresses a critical zero-day vulnerability that reversed previous fixes for older vulnerabilities and put Windows 10 syst… First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366610421/Microsoft-Zero-day-vulnerability-rolled-back-previous-patches
-
Qualcomm fixed a zero-day exploited limited, targeted attacks
Qualcomm warns of 20 flaws in its products, including a potential zero-day vulnerability, in the DSP service that impacts multiple chipsets. Qualcomm … First seen on securityaffairs.com Jump to article: securityaffairs.com/169540/hacking/qualcomm-zero-day-exploited-targeted-attacks.html
-
Mozilla fixes Firefox zero-day actively exploited in attacks
Mozilla has issued an emergency security update for the Firefox browser to address a critical use-after-free vulnerability that is currently exploited… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/mozilla-fixes-firefox-zero-day-actively-exploited-in-attacks/
-
Zero Day Exploit bei Rackspace
First seen on csoonline.com Jump to article: www.csoonline.com/de/a/zero-day-exploit-bei-rackspace
-
CISA Warns of Microsoft Zero-Day Vulnerabilities Exploited in the Wild
The Cybersecurity and Infrastructure Security Agency (CISA) has warned regarding two critical zero-day vulnerabilities affecting Microsoft Windows pro… First seen on gbhackers.com Jump to article: gbhackers.com/cisa-warns-of-microsoft-zero-day-vulnerabilities-exploited-in-the-wild/
-
Microsoft’s October 2024 Patch Tuesday: Addressing 5 Zero-Days and 118 Vulnerabilities
On October 10, 2024, Microsoft released its latest round of security updates as part of the monthly Patch Tuesday. This month’s update addresses a tot… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/10/microsofts-october-2024-patch-tuesday-addressing-5-zero-days-and-118-vulnerabilities/
-
Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572)
For October 2024 Patch Tuesday, Microsoft has released fixes for 117 security vulnerabilities, including two under active exploitation: CVE-2024-43573… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/10/08/cve-2024-43573-cve-2024-43572/
-
Critical Automative 0-Day Flaws Let Attackers Gain Full Control Over Cars
Recent discoveries in the automotive cybersecurity landscape have unveiled a series of critical zero-day vulnerabilities that could allow attackers to… First seen on gbhackers.com Jump to article: gbhackers.com/automative-0-day-flaws-control-cars/
-
Microsoft October 2024 Patch Tuesday fixes 5 zero-days, 118 flaws
Today is Microsoft’s October 2024 Patch Tuesday, which includes security updates for 118 flaws, including five publicly disclosed zero-days, two of wh… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-october-2024-patch-tuesday-fixes-5-zero-days-118-flaws/
-
Qualcomm zero-day under targeted exploitation (CVE-2024-43047)
An actively exploited zero-day vulnerability (CVE-2024-43047) affecting dozens of Qualcomm’s chipsets has been patched by the American semiconductor g… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/10/08/cve-2024-43047/
-
Ivanti fixes three CSA zero-days exploited in the wild (CVE-2024-9379, CVE-2024-9380, CVE-2024-9381)
Ivanti has patched three additional Cloud Service Appliance (CSA) zero-day flaws, which have been exploited by attackers in conjuction with a zero-day… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/10/08/cve-2024-9379-cve-2024-9380-cve-2024-9381/
-
Ivanti CSA Customers Targeted in New Zero Day Attacks
Attackers Chain Three Security Flaws with Patched Admin Bypass Vulnerability. Internet appliance maker Ivanti warned customers Tuesday that attackers … First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/ivanti-csa-customers-targeted-in-new-zero-day-attacks-a-26492
-
Ivanti warns of three more CSA zero-days exploited in attacks
American IT software company Ivanti has released security updates to fix three new Cloud Services Appliance (CSA) zero-days tagged as actively exploit… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/ivanti-warns-of-three-more-csa-zero-days-exploited-in-attacks/
-
Zero-Day Breach At Rackspace Sparks Vendor Blame Game
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36425/Zero-Day-Breach-At-Rackspace-Sparks-Vendor-Blame-Game.html
-
Qualcomm patches high-severity zero-day exploited in attacks
First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/qualcomm-patches-high-severity-zero-day-exploited-in-attacks/
-
Rackspace Internal Monitoring Web Servers Hit By Zero Day
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36415/Rackspace-Internal-Monitoring-Web-Servers-Hit-By-Zero-Day.html
-
Adobe fixed Acrobat bug, neglected to mention whole zero-day exploit thing
First seen on theregister.com Jump to article: www.theregister.com/2024/09/12/adobe_acrobat_0day/
-
Third-Party Zero-Day Leveraged to Target Rackspace Users
Tags: zero-dayFirst seen on scworld.com Jump to article: www.scworld.com/brief/third-party-zero-day-leveraged-to-target-rackspace-users
-
Third-party zero-day leveraged to breach certain Rackspace servers
First seen on scworld.com Jump to article: www.scworld.com/brief/third-party-zero-day-leveraged-to-breach-certain-rackspace-servers
-
Rackspace monitoring data stolen in ScienceLogic zero-day attack
Cloud hosting provider Rackspace suffered a data breach exposing limited customer monitoring data after threat actors exploited a zero-day vulnerabili… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/rackspace-monitoring-data-stolen-in-sciencelogic-zero-day-attack/
-
Third Party Zero-Day Bug Exploited in Rackspace Systems
Rackspace Scrambles to Patch Zero Day Dashboard Bug. Rackspace confirmed that criminals exploited a zero day vulnerability in a ScienceLogic third-par… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/third-party-zero-day-bug-exploited-in-rackspace-systems-a-26425
-
Volt Typhoon exploiting Versa Director zero-day flaw
First seen on techtarget.com Jump to article: www.techtarget.com/searchsecurity/news/366609294/Volt-Typhoon-exploiting-Versa-Director-zero-day-flaw
-
CVE-2024-47076, CVE-2024-47175, CVE-2024-47176, CVE-2024-47177: Frequently Asked Questions About Common UNIX Printing System (CUPS) Vulnerabilities
Frequently asked questions about multiple vulnerabilities in the Common UNIX Printing System (CUPS) that were disclosed as zero-days on September 26. … First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/09/cve-2024-47076-cve-2024-47175-cve-2024-47176-cve-2024-47177-frequently-asked-questions-about-common-unix-printing-system-cups-vulnerabilities/
-
Zero-Day Vulnerabilities in Automatic Tank Gauge Systems
Hackers Could Cause Tanks to Overfill and Disable Leak Detection. Industrial control systems made by different manufacturers for monitoring fuel stora… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/zero-day-vulnerabilities-in-automatic-tank-gauge-systems-a-26387
-
Multiple 0-Day Flaws in Automated Tank Gauge Systems Threaten Critical Infrastructure
Cybersecurity researchers from BitSight TRACE have uncovered multiple 0-day vulnerabilities in Automated Tank Gauge (ATG) systems, which are integral … First seen on gbhackers.com Jump to article: gbhackers.com/multiple-0-day-flaws/
-
‘Void Banshee’ Exploits Second Microsoft Zero-Day
First seen on darkreading.com Jump to article: www.darkreading.com/application-security/void-banshee-exploits-second-microsoft-zero-day
-
Unpatchable 0-day in surveillance cam is being exploited to install Mirai
First seen on arstechnica.com Jump to article: arstechnica.com/
-
PoC Exploit Released for CVE-2024-7965 Zero-Day Chrome Vulnerability
A proof-of-concept (PoC) exploit has been released for a critical zero-day vulnerability identified as CVE-2024-7965, affecting Google’s Chrome browse… First seen on gbhackers.com Jump to article: gbhackers.com/poc-exploit-released-zero-day/

