The Breach News

MS Office’s Built-In Feature Could Be Misused to Develop Self-Replicating Malware

New Macro Malware Threat Targets Microsoft Office Users Recently, a cybersecurity researcher revealed a significant security flaw affecting all versions of Microsoft Office that permits the creation and propagation of macro-based self-replicating malware. This vulnerability allows attackers to generate malicious macros that can reproduce themselves and infect other documents, a…

Read MoreMS Office’s Built-In Feature Could Be Misused to Develop Self-Replicating Malware

Urgent Action Required: Exploitation of BeyondTrust Remote Code Execution Vulnerability Detected – Cyber Press

Urgent Action Required: Exploitation of BeyondTrust Remote Code Execution Vulnerability Recent reports indicate a significant security vulnerability affecting BeyondTrust software, specifically a remote code execution flaw that is currently being exploited in the wild. This vulnerability poses a serious risk, allowing unauthorized actors to execute arbitrary code, which could potentially…

Read MoreUrgent Action Required: Exploitation of BeyondTrust Remote Code Execution Vulnerability Detected – Cyber Press

CISA Issues Critical Alert: Adobe ColdFusion Vulnerability Actively Exploited

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has identified a significant security flaw within Adobe ColdFusion, listing it in its Known Exploited Vulnerabilities (KEV) catalog as of March 15. The inclusion follows evidence of active exploitation targeting the critical vulnerability, recorded as CVE-2023-26360, which bears a CVSS score of…

Read MoreCISA Issues Critical Alert: Adobe ColdFusion Vulnerability Actively Exploited

Hackers Take Advantage of Newly Revealed Microsoft Office Vulnerability to Install Backdoors on PCs

Severe Microsoft Office Vulnerability Exploited to Deliver Cobalt Malware Recently uncovered, a critical 17-year-old vulnerability in Microsoft Office is being actively exploited by threat actors to deploy backdoor malware. This vulnerability, designated as CVE-2017-11882, allows hackers to install malicious software on targeted systems without requiring any user interaction, raising significant…

Read MoreHackers Take Advantage of Newly Revealed Microsoft Office Vulnerability to Install Backdoors on PCs

CISA Warns of OT Vulnerabilities Following Polish Power Grid Cyberattack

Cybersecurity Incident Roundup: Key Developments in Data Breaches and Cyber-attacks Recent weeks have seen significant cybersecurity incidents impacting various sectors, with agencies and organizations navigating the evolving landscape of cyber threats. Among the most pressing events, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued warnings following a cyberattack…

Read MoreCISA Warns of OT Vulnerabilities Following Polish Power Grid Cyberattack