Tuesday , April 1 2025

infosecbulletin

Google fixes two Android zero-days: Demand Immediate Patching

android

In its November 2024 security update, Google fixed 40 vulnerabilities in Android, including two that are actively exploited: CVE-2024-43047 and CVE-2024-43093. Google’s announcement gives minimal information about the exploitation, stating only that “there are indications that the following may be under limited, targeted exploitation.” CVE-2024-43047 is a critical vulnerability (CVSS …

Read More »

Hacker offer Titas gas root access to sale

titas gas

“A threat actor has reportedly claimed to gain root-level access to Titas Gas’s firewall server and is actively offering this access for sale on the dark web, posing a serious risk to Bangladesh’s energy infrastructure”. Bangladesh Cyber Security Intelligence (BCSI) reported that someone has reportedly gained unrestricted access to Titas …

Read More »

New malware FakeCall intercepts your calls to the bank

flowchart

Zimperium researchers have found a new version of FakeCall malware for Android that threatens financial security. This malware redirects users’ calls to their banks to the attacker’s phone number, aiming to steal sensitive information and funds. FakeCall is a banking trojan used for voice phishing, misleading victims into giving sensitive …

Read More »

Hikvision Patches Security Flaw in Network Cameras

Camera

Hikvision, a top provider of network cameras, has issued firmware updates to fix a security vulnerability that could reveal users’ Dynamic DNS credentials. This issue impacts various Hikvision camera models and may allow attackers to access sensitive information or disrupt camera communication with the Dynamic DNS service. The Vulnerability: Older …

Read More »

SonicWall report
Government Sector faces 236% Surge in Malware Attacks

Malware

Global threat actors have significantly increased attacks on government sectors, with malware-driven attempts rising by triple digits in the first quarter of the year, according to SonicWall. The security vendor’s analysis shows a 236% increase in blocked attacks in Q1 2024 compared to last year, along with a 27% rise …

Read More »

Bangladesh Kubernetes User Group Meetup successfully completed

people

Meetup of Bangladesh Kubernetes User Group was held at Banani Club 9294, Dhaka on Thursday, 31 October 2024. A lively and educational evening was organized with the participation of top Kubernetes experts and technology enthusiasts of the country. The meetup organized lectures and experience sharing sessions on several important topics. …

Read More »

Bangladesh Bank issues cyber threat alert

BD bank

Bangladesh Bank issues alert on cyber threat. In its alert the central bank said, according to Bangladesh cyber security intelligence (BCSI)’s observation, some banks customers are victim to unauthorized transaction through Facebook ad manager. In this situation, Bangladesh Bank notifies the banks to take precautionary action to secure the account …

Read More »

Hacker claim data breach: bank confirms blaming third party

interbank

Interbank, a major financial institution in Peru, has confirmed a data breach after a hacker leaked stolen data online. Formerly the International Bank of Peru, the company offers financial services to over 2 million customers. “To our clients: We regret this situation and understand the inconvenience this may cause you. …

Read More »

CISA Launches Its First Ever International Strategic Plan

CISA

The US Cybersecurity and Infrastructure Security Agency (CISA) has released its first international strategic plan to enhance global cooperation in addressing cyber threats to critical infrastructure. The plan recognizes that cyber risks are complex and spread across different regions, highlighting the importance of quickly sharing threat information and risk reduction …

Read More »