Tag Windows

Vulnerabilities in the Ollama AI Framework May Lead to DoS Attacks, Model Theft, and Poisoning Risks

Security Flaws Discovered in Ollama AI Framework Recent disclosures by cybersecurity researchers have revealed six vulnerabilities within the Ollama artificial intelligence (AI) framework, a tool enabling users to deploy large language models (LLMs) locally on multiple operating systems, including Windows, Linux, and macOS. These vulnerabilities present significant risks, allowing potential…

Read MoreVulnerabilities in the Ollama AI Framework May Lead to DoS Attacks, Model Theft, and Poisoning Risks

Linux Deployment of Cobalt Strike Beacon for Global Organizational Targeting

On Monday, cybersecurity researchers unveiled the existence of a newly identified re-implementation of the notorious Cobalt Strike Beacon for both Linux and Windows operating systems. This variant, dubbed “Vermilion Strike,” has been actively targeting a range of sectors, including government, telecommunications, IT, and financial institutions. This advanced yet undetected penetration…

Read MoreLinux Deployment of Cobalt Strike Beacon for Global Organizational Targeting

Windows MSHTML Zero-Day Exploited for Cobalt Strike Beacon Deployment in Targeted Attacks

Microsoft Unveils Details of Targeted Phishing Attack Exploiting Critical Vulnerability On Wednesday, Microsoft provided significant insights into a sophisticated phishing campaign that capitalized on a now-resolved zero-day vulnerability in its MSHTML platform. The exploit involved specially designed Office documents aimed at deploying Cobalt Strike Beacon malware on compromised Windows systems,…

Read MoreWindows MSHTML Zero-Day Exploited for Cobalt Strike Beacon Deployment in Targeted Attacks

LockBit 5.0 Launches Attacks on Windows, Linux, and ESXi Systems

The LockBit ransomware group has made a notable return, launching its latest variant, LockBit 5.0, after a period of inactivity triggered by law enforcement actions earlier in 2024. The resurgence comes despite significant disruptions to their infrastructure and efforts to dismantle their operations during Operation Cronos. Under the direction of…

Read MoreLockBit 5.0 Launches Attacks on Windows, Linux, and ESXi Systems

Hackers Target Popular BillQuick Billing Software to Launch Ransomware Attack

Critical Vulnerability Discovered in BillQuick Billing Software Exploited by Ransomware Actors Cybersecurity experts revealed a serious vulnerability in the BillQuick time and billing software, which has been actively targeted by threat actors to deploy ransomware. This flaw, designated as CVE-2021-42258, involves an SQL injection attack enabling remote code execution, putting…

Read MoreHackers Target Popular BillQuick Billing Software to Launch Ransomware Attack

Ukraine Uncovers Gamaredon Group: Identifies Russian FSB Officers Behind Hacking Operations

Ukraine’s leading law enforcement and counterintelligence agency has revealed the identities of five individuals allegedly involved in a series of digital intrusions tied to a cyber-espionage group known as Gamaredon, with connections to Russia’s Federal Security Service (FSB). This disclosure highlights the agency’s ongoing efforts to combat cyber threats directed…

Read MoreUkraine Uncovers Gamaredon Group: Identifies Russian FSB Officers Behind Hacking Operations

PhantomCaptcha RAT Assault Aims at Aid Organizations Assisting Ukraine

A sophisticated cyber operation, dubbed “PhantomCaptcha,” has targeted prominent humanitarian organizations and government entities engaged in war relief efforts in Ukraine, as detailed in recent research by SentinelLABS. The campaign has notably affected major organizations such as the International Red Cross, UNICEF, and the Norwegian Refugee Council, along with various…

Read MorePhantomCaptcha RAT Assault Aims at Aid Organizations Assisting Ukraine

New Chinotto Spyware Aims at North Korean Defectors and Human Rights Advocates

Recent Cyber Surveillance Attacks Target North Korean Defectors and Journalists In a disturbing development, advanced persistent threats (APTs) linked to nation-state actors have launched a series of highly-targeted surveillance attacks against North Korean defectors, journalists covering North Korea, and associated organizations based in South Korea. Reports from Russian cybersecurity firm…

Read MoreNew Chinotto Spyware Aims at North Korean Defectors and Human Rights Advocates

Microsoft Addresses 72 Vulnerabilities, Including a Patch for Actively Exploited CLFS Issue

Microsoft Wraps Up 2024 Patch Tuesday with Critical Security Fixes Microsoft concluded its Patch Tuesday updates for December 2024, addressing a total of 72 security vulnerabilities across its software ecosystem, including a specific flaw reported as actively exploited in the wild. Of these vulnerabilities, 17 have been classified as Critical,…

Read MoreMicrosoft Addresses 72 Vulnerabilities, Including a Patch for Actively Exploited CLFS Issue