Friday , October 18 2024

infosecbulletin

APACHE FIXED CRITICAL RCE FLAW CVE-2023-50164 at STRUTS 2

STRUTS CVE

The Apache Software Foundation fixed a critical file upload vulnerability in the Struts 2 open-source framework. This flaw, tracked as CVE-2023-50164, could allow remote code execution. An attacker can manipulate file upload parameters to upload a malicious file and execute code on the server. “An attacker can manipulate file upload …

Read More »

internet operational technology
17th bdNOG conference start tomorrow for three days

bdNOG conference

17th bdNOG Conference and Workshop is going to be held in Dhaka on December 12-15 jointly organized by Bangladesh Network Operators Group (BDING) and Internet Service Providers Association of Bangladesh (ISPAB). Three days technical workshop and one day hosting day will be in the conference. The workshop will train Internet …

Read More »

Canada Ransomware Whitepaper-2023
Mid-sized Canadian firms pay an average $1.13 million to ransomware gangs

Ransomware

A recent survey found that mid-sized Canadian companies paid an average of just over $1 million in ransomware payments this year. On Thursday, the results of a survey conducted by Palo Alto Networks were released. The survey involved IT professionals from 1,000 organizations with employee numbers ranging from 100 to …

Read More »

set deadline disclosing data
LockBit claim to hit Citizens Bank of West Virginia

Bank

LockBit ransomware group claim to have cyber attack the Citizens Bank of West Virginia. The group post on tweeter that “Just another greedy company that puts their own money above client’s privacy”. The hackers set a deadline for their demands till December 9, 2023, otherwise it will be published. But …

Read More »

US senator's letter
Governments spying on Apple, Google users through push notifications

Logo of Apple, Google

Some governments have asked Apple and Google for the push notification records of their users in order to track down certain individuals. This information comes from U.S. Senator Ron Wyden. “Push notifications are alerts sent by phone apps to users’ smartphones,” Wyden said. Senator Ron Wyden wrote a letter to …

Read More »

NCSA hold seminar
NCSA highlighted requirements of newly approved Cyber Security Act.2023

Guests to cyber security seminar

National Cyber Security Agency (NCSA) organized a seminar titled “Safe Internet Usage and Prevention of Cybercrime” on 07th December 2023 at Sher-e-Bangla Medical College Hospital, Barisal. The day-long seminar was organized by the National Cyber Security Agency, Information and Communication Technology Department in collaboration with the medical college authorities. The …

Read More »

interpol biometric hub
INTERPOL biometric tool to capture most wanted criminals

INTERPOL

INTERPOL, the world’s largest international police organization unveiled its new enhanced BioHub. This system, powered by IDEMIA’s advanced multibiometric identification system (MBIS), is expected to transform global law enforcement capabilities. MBIS 5 is the latest version, released in October 2023. It has new algorithms that improve matching accuracy, reduce response …

Read More »