CISA published an advisory about Industrial Control Systems (ICS) on February 22, 2024, to inform about security issues, vulnerabilities, and exploits related to ICS.
- ICSA-24-053-01 Delta Electronics CNCSoft-B DOPSoft:
EXECUTIVE SUMMARY
CVSS v3 7.8 - ATTENTION: Low attack complexity
Vendor: Delta Electronics
Equipment: CNCSoft-B DOPSoft
Vulnerability: Uncontrolled Search Path Element - RISK EVALUATION
Successful exploitation of this vulnerability could allow an attacker to achieve remote code execution. - AFFECTED PRODUCTS:
The following Delta Electronics products are affected:
B1ack’s Stash Releases 1 Million Credit Cards on a Deep Web Forum
By infosecbulletin / Saturday , February 22 2025On February 19, 2025, the illegal marketplace B1ack's Stash released over 1 million unique stolen credit and debit card details...Read MoreCisco Confirms
Salt Typhoon Exploited CVE-2018-0171 to Target U.S. Telecom NetworksBy infosecbulletin / Saturday , February 22 2025Cisco Talos reported that Salt Typhoon, also known as FamousSparrow and GhostEmperor, has been spying on U.S. telecommunication providers using...Read MoreAWS Key Hunter
Test this free automated tool to hunt for exposed AWS secretsBy infosecbulletin / Thursday , February 20 2025A free tool is now available to scan public GitHub repositories for exposed AWS credentials. Security engineer Anmol Singh Yadav created...Read MoreCheck Point Flaw Used to Deploy ShadowPad and Ransomware
By infosecbulletin / Thursday , February 20 2025An unknown threat cluster has targeted European healthcare organizations, deploying PlugX and ShadowPad. In some cases, these intrusions resulted in...Read MoreCVE-2024-12284
Citrix Issues Security Update for NetScaler ConsoleBy infosecbulletin / Thursday , February 20 2025Citrix has issued security updates for a serious vulnerability in the NetScaler Console and NetScaler Agent that could allow privilege...Read MoreCISA and FBI ALERT
Ghost ransomware to breach organizations in 70 countriesBy infosecbulletin / Thursday , February 20 2025The FBI and CISA reported on Wednesday that the ransomware group Ghost has been exploiting software and firmware vulnerabilities as...Read MoreHacker chains multiple vulns to attack Palo Alto Firewall
By infosecbulletin / Thursday , February 20 2025Palo Alto Networks has issued urgent warnings about threat actors to exploit vulnerabilities in PAN-OS, the operating system powering its...Read More150 Gov.t Portal affected
Black-Hat SEO Poisoning Indian “.gov.in, .ac.in” domainBy infosecbulletin / Tuesday , February 18 2025Indian government and educational websites, along with reputable financial brands, have experienced SEO poisoning, causing user traffic to be redirected...Read MoreCVE-2018-19410 Exposes 600 PRTG Instances in Bangladesh
By infosecbulletin / Tuesday , February 18 2025The Cyber Threat Intelligence Unit of BGD e-GOV CIRT has found 600 vulnerable PRTG instances in Bangladesh, affected by the...Read MoreBuilder claims Rs 150 cr for data loss; AWS faces FIR In Bengaluru
By infosecbulletin / Monday , February 17 2025Amazon Web Services (AWS) has been named in an FIR after a builder claimed damages to the tune of Rs...Read MoreCNCSoft-B v1.0.0.4 DOPSoft: versions prior to v4.0.0.82