Threat Intelligence

Threat Intelligence news from the cyber security industry and abroad. Gain insight into cybercrime and advanced persistent threats. Read the latest threat intelligence on malware and other vulnerabilities or malicious programs.

dark reading threat intel and cybersecurity news

IBM Cloud Supply Chain Vulnerability Showcases New Threat Class

0
A vulnerability in IBM Cloud databases for PostgreSQL could have allowed attackers to launch a supply chain attack on cloud customers by breaching internal IBM Cloud services and disrupting...
dark reading threat intel and cybersecurity news

Google TAG Warns on Emerging Heliconia Exploit Framework for RCE

0
Google's Threat Analysis Group (TAG) has discovered a cyberattack framework dubbed Heliconia, built to exploit zero-day and n-day vulnerabilities in Chrome, Firefox, and Microsoft Defender. It likely has connections...
dark reading threat intel and cybersecurity news

CyberRatings.org Revives NSS Labs Research

0
AUSTIN, Texas, Nov. 29, 2022 /PRNewswire/ — CyberRatings.org, the nonprofit entity dedicated to providing transparency on cybersecurity product efficacy, has launched The NSS Labs archive, a library of over 800 test reports,...
dark reading threat intel and cybersecurity news

Critical Quarkus Flaw Threatens Cloud Developers With Easy RCE

0
A critical remote code-execution (RCE) bug in an open source Java virtual machine (JVM) framework threatens enterprise environments by giving attackers an easy way to compromise development teams —...
dark reading threat intel and cybersecurity news

New Exploit Broker on the Scene Pays Premium for Signal App Zero-Days

0
Gray-market exploit brokers are alive and kicking, with the latest sign of this flourishing market coming in the form of a bidding war for Signal messaging app zero-days from...
dark reading threat intel and cybersecurity news

Cyberattackers Selling Access to Networks Compromised via Recent Fortinet Flaw

0
Fortinet customers that have not yet patched a critical authentication bypass vulnerability that the vendor disclosed in October in multiple versions of its FortiOS, FortiProxy, and FortiSwitch Manager technologies...
dark reading threat intel and cybersecurity news

Acer Firmware Flaw Lets Attackers Bypass Key Security Feature

0
Acer is working to fix a firmware flaw affecting five of its laptop models. An exploit could allow attackers to disable a machine's Secure Boot settings to bypass key security...
dark reading threat intel and cybersecurity news

Killnet Gloats About DDoS Attacks Downing Starlink, White House

0
Killnet and its band of hacker collaborators are claiming they were able to pull off a trio of symbolic distributed denial-of-service (DDoS) attacks aimed at punishing some of the most...
dark reading threat intel and cybersecurity news

The Metaverse Could Become a Top Avenue for Cyberattacks in 2023

0
A combination of maturing and emerging consumer-facing cyber threats could add to the many challenges that enterprise security teams will need to contend with in 2023.Researchers at Kaspersky, looking...
dark reading threat intel and cybersecurity news

Oracle Fusion Middleware Flaw Flagged by CISA

0
A critical bug in Oracle's Fusion Middleware Access Manager has landed on the Cybersecurity and Infrastructure Security Agency's list of known exploited vulnerabilities. The critical flaw, tracked under CVE-2021-35587, could...