Mandiant, a prominent cybersecurity firm now part of google cloud, has uncovered the activities of UNC3886, a Chinese cyberespionage group that has been actively exploiting a zero-day vulnerability in VMware ESXi. This vulnerability allows the group to escalate privileges on guest virtual machines, gaining unauthorized access and control. The initial …
Read More »Daily Cybersecurity Update, June 13- 2023
We have three more victims of the MOVEit vulnerability – government departments in two U.S. states and a U.K regulator. All leading to the compromise of sensitive data. Earlier this year, healthcare vendor Intellihartx had fallen victim to the GoAnywhere zero-day attack. It concluded the investigation, revealing hundreds of thousands …
Read More »Fortinet Warns Customers of Possible Zero-Day Exploited in Limited Attacks
Fortinet on Monday warned customers that a recently patched vulnerability, tracked as CVE-2023-27997, could be a zero-day flaw that has been exploited in limited attacks. The vulnerability, which is a critical heap-based buffer overflow in the SSL-VPN module, can allow a remote hacker to execute arbitrary code or commands using …
Read More »Microsoft Warns of AitM Phishing Attacks Against Financial Organizations
A newly discovered multi-stage Adversary-in-the-Middle (AitM) phishing and BEC attack campaign has been targeting banking and financial organizations. According to Microsoft, the attack originated from a compromised trusted vendor and transitioned to a series of AitM and BEC attacks. During this period, the attackers abused the trusted relationship between vendors, …
Read More »Indian CoWIN health database leaked: How safe “Surokkha” in Bangladesh
Several Indian media report that a massive data breach of the CoWIN portal (The central platform for COVID-19 vaccination registration in India) had happened. For this breach media report one billion Indian citizens’ data is at risk. This data leak has also exposed the Aadhaar card, Voter ID, and PAN …
Read More »“Pratya” hack facebook with attractive ads, Police arrest
Luscious advertisements such as ‘Lakh Tucker Jackpot’ or ‘Million Dollar Lottery’ were given on Facebook. And if you click on that link, your Facebook account will be activated. After that, the hacker used to extort money from the victim by talking about recovering that account. The Mirpur Thana police gave …
Read More »14-Year-Old Bangladeshi origin Computer Science Genius to Join SpaceX
Quazi is a 13-year-old computer science graduate from Santa Clara University (SCU). He will be starting his new job as a software engineer at SpaceX next month. Quazi was born in Pleasanton, California. He showed signs of being a gifted child at a young age. He was speaking in full …
Read More »Official verified Facebook page of ‘DESCO’ hacked
The official verified Facebook page of Dhaka Electric Supply Company Limited (DESCO) has been hacked. This information was informed in a statement of the Ministry of Power, Energy and Mineral Resources on Saturday (June 10). By visiting the Facebook page, it was seen that the hackers had written slogans of …
Read More »Daily Cybersecurity Update, June 09-2023
Only recently did Barracuda ask you to replace your hacked ESG appliances and we already have our first victim. The Australian capital suffered a security breach, owing to a vulnerability in the product. Another day, another unsecured bucket. A database containing hundreds of thousands of files belonging to Pflegia was …
Read More »Cybercriminals’ use whatsapp trapping candidate’ at Rajshahi city corporation election
A cyber criminal whatsapp gang is threatening to change the result of a specifiq candidate of rajshahi city corporation election if the candidate doesnt listen to him. Arman Ali, the candidate and current councilor of Ward No. 24 of the city, complained on Thursday (June 8) after realizing the cheating …
Read More »