Tag Palo Alto Networks

Attackers Target Public .env Files to Compromise Cloud Accounts in Extortion Scheme

A significant extortion campaign has emerged, targeting various organizations by exploiting publicly accessible environment variable files (commonly ending in .env) that contain sensitive credentials for cloud and social media applications. This alarming trend underscores the vulnerabilities in data security practices across industries. According to a report by Palo Alto Networks’…

Read MoreAttackers Target Public .env Files to Compromise Cloud Accounts in Extortion Scheme

Critical OpenSSH Vulnerability Could Enable Root RCE on Linux Systems

OpenSSH Vulnerability Exposes Critical Risk to Linux Systems In a significant development for cybersecurity, the maintainers of OpenSSH have issued urgent security updates addressing a severe vulnerability that may allow unauthenticated remote code execution with root-level access on glibc-based Linux systems. This vulnerability, designated CVE-2024-6387 and dubbed "regreSSHion," resides within…

Read MoreCritical OpenSSH Vulnerability Could Enable Root RCE on Linux Systems

New Mispadu Banking Trojan Takes Advantage of Windows SmartScreen Vulnerability

The Mispadu banking Trojan has been identified as leveraging a recently patched vulnerability in Windows SmartScreen to target users in Mexico. This malware, which first appeared in 2019, has evolved into a new variant that cybercriminals are utilizing to gain unlawful access to sensitive information. According to a report from…

Read MoreNew Mispadu Banking Trojan Takes Advantage of Windows SmartScreen Vulnerability

Palo Alto Networks Addresses Critical Vulnerability in Expedition Migration Tool

Palo Alto Networks has issued critical security updates in response to five vulnerabilities affecting its products, including a significant flaw that poses an authentication bypass risk. This vulnerability, identified as CVE-2024-5910, has been assigned a high CVSS score of 9.3 and pertains to a missing authentication issue in the Expedition…

Read MorePalo Alto Networks Addresses Critical Vulnerability in Expedition Migration Tool

Zero-Day Alert: Critical Vulnerability in Palo Alto Networks PAN-OS is Under Active Exploitation

Palo Alto Networks has issued an urgent warning regarding a critical vulnerability affecting its PAN-OS software utilized in GlobalProtect gateways, noting that this flaw is currently being actively exploited in the wild. Designated as CVE-2024-3400, this vulnerability carries a maximum CVSS score of 10.0, underscoring its potential severity and urgency…

Read MoreZero-Day Alert: Critical Vulnerability in Palo Alto Networks PAN-OS is Under Active Exploitation

Palo Alto Networks Issues Critical Patches for Exploited PAN-OS Vulnerability

Palo Alto Networks has issued urgent hotfixes in response to a critical security vulnerability affecting its PAN-OS software that is currently being exploited in live environments. This vulnerability, identified as CVE-2024-3400, has received the highest severity rating with a CVSS score of 10.0. It involves a command injection flaw within…

Read MorePalo Alto Networks Issues Critical Patches for Exploited PAN-OS Vulnerability

State-Sponsored Hackers Leverage Two Cisco Zero-Day Vulnerabilities for Espionage Activities

A recent malware campaign has targeted Cisco networking equipment, exploiting two previously unknown vulnerabilities identified as zero-day flaws to deliver customized malware and conduct covert data collection in targeted environments. Cisco Talos, naming this operation “ArcaneDoor,” has attributed the attacks to UAT4356, an advanced state-sponsored group also known as Storm-1849…

Read MoreState-Sponsored Hackers Leverage Two Cisco Zero-Day Vulnerabilities for Espionage Activities

Serious Docker Engine Vulnerability Enables Attackers to Circumvent Authorization Plugins

Docker Warns of Critical Flaw in Docker Engine Docker has issued an urgent alert regarding a significant vulnerability affecting various versions of the Docker Engine. This flaw could allow attackers to bypass authorization plugins (AuthZ) under certain conditions, posing a serious security risk for users. Labeled as CVE-2024-41110, this bypass…

Read MoreSerious Docker Engine Vulnerability Enables Attackers to Circumvent Authorization Plugins