Wednesday , May 15 2024

International

Apple alerts 92 nations to mercenary spyware attacks

Apple

Apple warned users in 91 other countries about a possible “mercenary spyware attack”. Apple notified Reuters that the company found evidence of attackers attempting to remotely compromise iPhones. Mercenary spyware attacks are rare but much more sophisticated than regular cybercriminal activity or malware, as stated in the email. Apple also …

Read More »

CISA Announces Malware Next-Gen Analysis

CISA

CISA has launched a new malware analysis system called Malware Next-Gen. It allows organizations to submit malware samples and suspicious artifacts for analysis, helping CISA to better support partners by automating analysis of new malware and improving cyber defense efforts. Network defenders need timely and useful information about malware, including …

Read More »

Fortinet Releases Security Updates for Multiple Products

Fortinet

Fortinet has released security updates for various products, including OS and FortiProxy, to fix vulnerabilities that could allow a cyber threat actor to take control of a system. CISA encourages users and administrators to take the following steps for enhanced security: FR-IR-23-345 FortiClientMac – Lack of configuration file validation: An …

Read More »

Cisco Talos report
“CoralRaider” Targeting Financial Data Across Asia including Bangladesh

CoralRaider

Vietnamese hackers are targeting businesses in Asia to get corporate credentials and financial data to sell online. Researchers at Cisco Talos found a group of hackers, known as CoralRaider, targeting India, China, South Korea, Bangladesh, Pakistan, Indonesia, and local entities with a specific type of malware. Talos believes that the …

Read More »

New HTTP/2 Vulnerability Exposes Web Servers to DoS Attacks

http/2

The HTTP/2 protocol has a vulnerability in the CONTINUATION frame that allows for denial-of-service (DoS) attacks. Security researcher Bartek Nowotarski named this technique HTTP/2 CONTINUATION Flood and reported it to the CERT Coordination Center (CERT/CC) on January 25, 2024. “Many HTTP/2 implementations do not properly limit or sanitize the amount …

Read More »