Zyxel NAS Devices Prone to Command Injection Attacks
Zyxel released critical hotfixes to fix a command injection vulnerability in two of its NAS products, NAS326 and NAS542. Although these devices are no longer supported for vulnerabilities, they remain [...]
Hackers Exploit GeoServer RCE to Deploy Malware
Cybersecurity researchers at Fortinet recently discovered that hackers have been exploiting GeoServer RCE vulnerability to deploy malware, and the vulnerability is tracked as “CVE-2024-36401.” GeoServer RCE Vulnerability GeoServer is an [...]
Vulnerabilities in IBM WebSphere Integration Server could let attackers execute commands.
Critical vulnerabilities have been found that could let attackers execute commands on systems. These issues, listed in the Common Vulnerabilities and Exposures (CVE) system, pose serious risks and need urgent [...]
Akira Ransomware Targets SonicWall Firewall RCE Flaw
SonicWall revealed a critical RCE vulnerability (CVE-2024-40766) in SonicOS on August 22, 2024. Initially, no exploitation was reported, but by September 6, active attacks were detected. This flaw allows attackers [...]
Predator Spyware leverages “one-click” and “zero-click” exploits
Recent research shows Predator spyware has resurfaced with improved evasion techniques, despite US sanctions. It's still active in countries like the DRC and Angola, targeting high-profile individuals with harder-to-track infrastructure, [...]