Friday , November 22 2024

infosecbulletin

Mandiant Warns of VMware ESXi Zero-Day exploiting

vmware

Mandiant, a prominent cybersecurity firm now part of google cloud, has uncovered the activities of UNC3886, a Chinese cyberespionage group that has been actively exploiting a zero-day vulnerability in VMware ESXi. This vulnerability allows the group to escalate privileges on guest virtual machines, gaining unauthorized access and control. The initial …

Read More »

Fortinet Warns Customers of Possible Zero-Day Exploited in Limited Attacks

Fortinet on Monday warned customers that a recently patched vulnerability, tracked as CVE-2023-27997, could be a zero-day flaw that has been exploited in limited attacks. The vulnerability, which is a critical heap-based buffer overflow in the SSL-VPN module, can allow a remote hacker to execute arbitrary code or commands using …

Read More »

Microsoft Warns of AitM Phishing Attacks Against Financial Organizations

A newly discovered multi-stage Adversary-in-the-Middle (AitM) phishing and BEC attack campaign has been targeting banking and financial organizations. According to Microsoft, the attack originated from a compromised trusted vendor and transitioned to a series of AitM and BEC attacks. During this period, the attackers abused the trusted relationship between vendors, …

Read More »

Indian CoWIN health database leaked: How safe “Surokkha” in Bangladesh

Several Indian media report that a massive data breach of the CoWIN portal (The central platform for COVID-19 vaccination registration in India) had happened. For this breach media report one billion Indian citizens’ data is at risk. This data leak has also exposed the Aadhaar card, Voter ID, and PAN …

Read More »

“Pratya” hack facebook with attractive ads, Police arrest

Luscious advertisements such as ‘Lakh Tucker Jackpot’ or ‘Million Dollar Lottery’ were given on Facebook. And if you click on that link, your Facebook account will be activated. After that, the hacker used to extort money from the victim by talking about recovering that account. The Mirpur Thana police gave …

Read More »

Cybercriminals’ use whatsapp trapping candidate’ at Rajshahi city corporation election

A cyber criminal whatsapp gang is threatening to change the result of a specifiq candidate of rajshahi city corporation election if the candidate doesnt listen to him. Arman Ali, the candidate and current councilor of Ward No. 24 of the city, complained on Thursday (June 8) after realizing the cheating …

Read More »