Tag: zero-day
-
CCTV Zero-Day Exposes Critical Infrastructure to Mirai Botnet
First seen on darkreading.com Jump to article: www.darkreading.com/ics-ot-security/cctv-zero-day-targeted-by-mirai-botnet-campaign
-
Unpatched AVTECH IP Camera Flaw Exploited by Hackers for Botnet Attacks
A years-old high-severity flaw impacting AVTECH IP cameras has been weaponized by malicious actors as a zero-day to rope them into a botnet.CVE-2024-7… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/unpatched-avtech-ip-camera-flaw.html
-
APT60 Group Exploit WPS Office Flaw to Deploy SpyGlace Backdoor
A South Korea-aligned cyber espionage has been linked to the zero-day exploitation of a now-patched critical remote code execution flaw in Kingsoft WP… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/apt-c-60-group-exploit-wps-office-flaw.html
-
Velvet Ant Exploits Cisco Zero-Day Flaw For System Control
In light of recent cybercrime events, details pertaining to the Cisco zero-day flaw that has now been patched have emerged. As per the details, the fl… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/09/velvet-ant-exploits-cisco-zero-day-flaw-for-system-control/
-
Chinese Volt Typhoon Exploits Versa Director Flaw, Targets U.S. and Global IT Sectors
The China-nexus cyber espionage group tracked as Volt Typhoon has been attributed with moderate confidence to the zero-day exploitation of a recently … First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/chinese-volt-typhoon-exploits-versa.html
-
Chromium zero-day leveraged by North Korean hackers
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/chromium-zero-day-leveraged-by-north-korean-hackers
-
China’s Volt Typhoon Exploits Zero-Day in Versa’s SD-WAN Director Servers
So far, the threat actor has compromised at least five organizations using CVE-2024-39717; CISA has added bug to its Known Exploited Vulnerability dat… First seen on darkreading.com Jump to article: www.darkreading.com/cyberattacks-data-breaches/china-s-volt-typhoon-actively-exploiting-now-patched-0-day-in-versa-director-servers
-
PoC Exploit Released For 0-Day Windows Kernel Privilege Escalation Vulnerability
Microsoft released several patches for multiple vulnerabilities during the Patch Tuesday for August 2024. One of the vulnerabilities listed by Microso… First seen on gbhackers.com Jump to article: gbhackers.com/windows-0-day-poc-exploit/
-
Google Patches Actively Exploited Android 0-day Privilege Escalation Vulnerability
Google has released a patch addressing a critical zero-day vulnerability that has been actively exploited. This vulnerability, CVE-2024-32896, is a pr… First seen on gbhackers.com Jump to article: gbhackers.com/google-patchesandroid-0-day-vulnerability/
-
CVE-2024-7971: North Korean APT Citrine Sleet Exploits Chromium Zero-Day
In a recent cybersecurity report, Microsoft Threat Intelligence has revealed that a North Korean threat actor, believed to be Citrine Sleet, has been … First seen on securityonline.info Jump to article: securityonline.info/cve-2024-7971-north-korean-apt-citrine-sleet-exploits-chromium-zero-day/
-
Volt Typhoon Hackers Exploit Zero-Day Vulnerability in Versa Director Servers Used by MSPs, ISPs
First seen on techrepublic.com Jump to article: www.techrepublic.com/article/volt-typhoon-exploits-versa-director/
-
Volt Typhoon exploiting zero-day in campaign targeting ISPs, MSPs
<figure><div><img src=https://www.cybersecuritydive.com/imgproxy/AeYaSLh-KQ8pm8YqsHv7gEs_SUnUxcjXJLlvxSJWLlQ/g:ce/bG9jYWw6Ly8vZGl2ZWltY… First seen on cybersecuritydive.com Jump to article: www.cybersecuritydive.com/news/volt-typhoon-zero-day-isps-msps/725492/
-
North Korean Hackers Actively Exploiting Chromium RCE Zero-Day In The Wild
Tags: exploit, hacker, microsoft, north-korea, rce, remote-code-execution, threat, vulnerability, zero-dayMicrosoft has identified a North Korean threat actor, Citrine Sleet, exploiting a zero-day vulnerability in Chromium (CVE-2024-7971) to gain remote co… First seen on gbhackers.com Jump to article: gbhackers.com/chromium-rce-zero-day-in-the-wild/
-
Unpatchable Zero Day In Surveillance Cam Is Being Exploited To Install Mirai
First seen on packetstormsecurity.com Jump to article: packetstormsecurity.com/news/view/36271/Unpatchable-Zero-Day-In-Surveillance-Cam-Is-Being-Exploited-To-Install-Mirai.html
-
Microsoft Says North Korean Cryptocurrency Thieves Behind Chrome Zero-Day
Redmond’s threat intel team said exploitation of CVE-2024-7971 can be attributed to a North Korean APT targeting the cryptocurrency sector for financi… First seen on securityweek.com Jump to article: www.securityweek.com/microsoft-says-north-korean-cryptocurrency-thieves-behind-chrome-zero-day/
-
Operation DevilTiger: APT12’s Shadowy Tactics and Zero-Day Exploits Unveiled
The QiAnXin Threat Intelligence Center has disclosed the technical details of a sophisticated cyber espionage campaign dubbed >>Operation DevilTiger,
-
North Korean Hackers Tied to Exploits of Chromium Zero-Day
Cryptocurrency Users Targeted in Latest Campaign Involving FudModule Rootkit. A hacking group tied to North Korea exploited a zero-day vulnerability i… First seen on govinfosecurity.com Jump to article: www.govinfosecurity.com/north-korean-hackers-tied-to-exploits-chromium-zero-day-a-26181
-
North Korea-linked APT Citrine Sleet exploit Chrome zero-day to deliver FudModule rootkit
North Korea-linked APT exploited the recently patched Google Chrome zero-day CVE-2024-7971 to deploy the FudModule rootkit. North Korea-linked group C… First seen on securityaffairs.com Jump to article: securityaffairs.com/167848/breaking-news/north-korea-linked-apt-exploited-chrome-zero-day-cve-2024-7971.html
-
North Korean hackers exploit Chrome zero-day to deploy rootkit
North Korean hackers have exploited a recently patched Google Chrome zero-day (CVE-2024-7971) to deploy the FudModule rootkit after gaining SYSTEM pri… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/north-korean-hackers-exploit-chrome-zero-day-to-deploy-rootkit/
-
Suspected North Korean hackers targeted crypto industry with Chromium zero-day
First seen on therecord.media Jump to article: therecord.media/suspected-north-korean-hackers-crypto-chromium-zero-day
-
South Korea-linked group APT-C-60 exploited a WPS Office zero-day
South Korea-linked group APT-C-60 exploited a zero-day in the Windows version of WPS Office to target East Asian countries. South Korea-linked group A… First seen on securityaffairs.com Jump to article: securityaffairs.com/167825/hacking/apt-c-60-wps-office-zero-day.html
-
Verbesserte Erkennung von Zero-Day-Phishing-Kampagnen
Die Sicherheitsforscher von Check Point Software Technologies haben eine bedeutende Verbesserung in der Erkennung und Abwehr von Phishing- und Malware… First seen on netzpalaver.de Jump to article: netzpalaver.de/2024/08/27/verbesserte-erkennung-von-zero-day-phishing-kampagnen/
-
Operation DevilTiger, APT Hackers 0-Day Exploitation Tactics Exposed
The APT-Q-12 group, also known as Pseudo Hunter, is a Northeast Asian threat actor linked to Darkhotel, which primarily targets East Asian countries, … First seen on gbhackers.com Jump to article: gbhackers.com/deviltiger-apt-zero-day/
-
South Korean Spies Exploit WPS Office Zero-Day
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/south-korean-spies-exploit-wps/
-
Chinese Hackers Exploit Zero-Day Cisco Switch Flaw to Gain System Control
Details have emerged about a China-nexus threat group’s exploitation of a recently disclosed, now-patched security flaw in Cisco switches as a zero-da… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/chinese-hackers-exploit-zero-day-cisco.html
-
Resurrecting Internet Explorer: Threat Actors Using Zero-day Tricks in Internet Shortcut File to Lure Victims (CVE-2024-38112)
y Haifei Li Introduction and Background Check Point Research recently discovered that threat actors have been using novel (or previously unknown) tric… First seen on research.checkpoint.com Jump to article: research.checkpoint.com/2024/resurrecting-internet-explorer-threat-actors-using-zero-day-tricks-in-internet-shortcut-file-to-lure-victims-cve-2024-38112/
-
South Korean hackers exploited WPS Office zero-day to deploy malware
The South Korea-aligned cyberespionage group APT-C-60 has been leveraging a zero-day code execution vulnerability in the Windows version of WPS Office… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/apt-c-60-hackers-exploited-wps-office-zero-day-to-deploy-spyglace-malware/
-
Malware exploits 5-year-old zero-day to infect end-of-life IP cameras
The Corona Mirai-based malware botnet is spreading through a 5-year-old remote code execution (RCE) zero-day in AVTECH IP cameras, which have been dis… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/malware-exploits-5-year-old-zero-day-to-infect-end-of-life-ip-cameras/

