Microsoft SharePoint Connector flaw enables credential theft
A critical SSRF flaw in Microsoft Power Platform’s SharePoint connector let attackers steal credentials and impersonate users across multiple services. The patched vulnerability posed major risks to organizations using SharePoint. [...]
Apple 0-Day Vulnerability Exploited in Highly Sophisticated Attacks
Apple released iOS 18.3.1 and iPadOS 18.3.1 to fix a zero-day vulnerability exploited in targeted attacks by bypassing USB Restricted Mode. This feature blocks unauthorized USB access when a device [...]
Hackers are brute-forcing web login pages of popular firewalls
ShadowServer reports a surge in brute-force attacks on edge device logins, with up to 2.8 million IPs daily, mainly from Brazil, targeting firewalls, VPNs, and IoT systems from major vendors. [...]
New Malware Targets Indian Bank Users for Aadhar, PAN, and PIN Theft
A recent cybersecurity threat in India targets users of various banks with a sophisticated malware campaign. Discovered by the zLabs research team, the campaign includes nearly 900 malware samples aimed [...]
MacOS password-stealing malware is spreading rapidly
MacOS users are seeing a sharp rise in password-stealing malware, spread through fake apps and ads. Leading threats include “Atomic Stealer,” “Poseidon Stealer,” and “Cthulhu Stealer,” each using unique tactics, [...]
Get Social