Tag Microsoft

Researchers Reveal Key Details About Critical ‘CosMiss’ RCE Vulnerability in Azure Cosmos DB

On Tuesday, Microsoft disclosed that it had rectified an authentication bypass vulnerability in Jupyter Notebooks associated with Azure Cosmos DB, which had the potential to grant unauthorized full read and write access. This issue was identified on August 12, 2022, and was effectively resolved worldwide by October 6, 2022, shortly…

Read MoreResearchers Reveal Key Details About Critical ‘CosMiss’ RCE Vulnerability in Azure Cosmos DB

WannaCry Kill Switch Activated? The Threat Isn’t Over—Introducing WannaCry 2.0 Ransomware!

WannaCry Ransomware Attack: Update on the Ongoing Threat In recent days, the cybersecurity community has been closely monitoring the developments surrounding the WannaCry ransomware. While initial reports indicated that a 22-year-old British security researcher successfully deployed a “kill switch” to halt the spread of the malware, the reality is more…

Read MoreWannaCry Kill Switch Activated? The Threat Isn’t Over—Introducing WannaCry 2.0 Ransomware!

Microsoft Alerts on Rise of Hackers Exploiting Publicly Disclosed Zero-Day Vulnerabilities

Recent disclosures from Microsoft highlight a worrying trend: nation-state and criminal actors are increasingly capitalizing on publicly-identified zero-day vulnerabilities to infiltrate targeted environments. In its detailed Digital Defense Report, which spans 114 pages, Microsoft observes that the time lag between the announcement of a vulnerability and its exploitation has decreased…

Read MoreMicrosoft Alerts on Rise of Hackers Exploiting Publicly Disclosed Zero-Day Vulnerabilities

⚡ Weekly Highlights: Fortinet Vulnerabilities, RedLine Clipjack, NTLM Cracking, Copilot Attack & More

Emerging Cyber Threats: A Week in Review In the swiftly evolving landscape of cybersecurity, the distinctions between routine updates and significant breaches are increasingly blurred. Systems that once appeared secure are now subject to relentless challenges posed by new artificial intelligence tools, interconnected devices, and intricate automated systems. These innovations…

Read More⚡ Weekly Highlights: Fortinet Vulnerabilities, RedLine Clipjack, NTLM Cracking, Copilot Attack & More

First-Ever Malware Discovered Utilizing Intel AMT Tool to Evade Firewalls and Steal Data

On the cybersecurity landscape, exploiting visible networks often falls to the realm of well-resourced, state-sponsored hacking groups. While infiltrating corporate systems may not be particularly challenging for these actors, ensuring the longevity of their access and maintaining undetectable communication channels poses a significant hurdle. A cyber-espionage group known as **Platinum**…

Read MoreFirst-Ever Malware Discovered Utilizing Intel AMT Tool to Evade Firewalls and Steal Data

New Fileless Ransomware with Code Injection Capabilities Discovered in the Wild

Emerging Threat: Fileless Ransomware “Sorebrect” Targets Enterprises Cybercriminals are evolving, leveraging increasingly sophisticated tactics to execute attacks. A recent report highlights the emergence of a fileless ransomware strain known as “Sorebrect.” Unlike traditional ransomware, which often relies on files to infect systems, Sorebrect injects malicious code directly into legitimate processes,…

Read MoreNew Fileless Ransomware with Code Injection Capabilities Discovered in the Wild