Security News

New ‘Sodinokibi’ Ransomware Exploits Critical Oracle WebLogic Flaw
2019-04-30 19:20

A recently-patched critical flaw in Oracle WebLogic is being actively exploited to peddle a new ransomware variant, which researchers call "Sodinokibi."

Cyptojacking Attacks Target Enterprises With NSA-Linked Exploits
2019-04-26 14:14

A new cyptojacking campaign targeting enterprises in Asia is leveraging the National Security Agency-linked DoublePulsar backdoor and the EternalBlue exploit for network spreading, Symantec...

Leaked Carbanak Source Code Reveals No New Exploits
2019-04-25 16:17

FireEye’s analysis of the Carbanak source code that emerged on VirusTotal recently found no use of new exploits. Their review of the code also verified previous assumptions on the group behind a...

Exploits for Social Warfare WordPress Plugin Reach Critical Mass
2019-04-23 17:30

More and more attacks taking advantage of a XSS and RCE bug in the popular plugin have cropped up in the wild.

RunSafe Security unveils new exploit identification and information sharing program
2019-04-18 00:30

RunSafe Security, the pioneer of a patented cyberhardening process for vulnerable embedded systems and devices, announced the formation of a new exploit identification and information sharing...

Windows Zero-Day Emerges in Active Exploits
2019-04-16 16:13

Patched just last week, the Windows kernel bug is being used for full system takeover.

Flood of exploits targetting ancient WinRAR flaw continues
2019-04-15 12:50

An ancient WinRAR vulnerability made public in February is now well on its way to becoming one of the most widely and rapidly-exploited security flaws of recent times.

PoC exploit for Carpe Diem Apache bug released
2019-04-09 09:25

Charles Fol, the security engineer that unearthed the Carpe Diem Apache HTTP Server bug (CVE-2019-0211), has released an exploit for it. “This is between a POC and a proper exploit. I added tons...

April Patch Tuesday Forecast: Be aware of end-of-service issues and browser exploits
2019-04-05 09:21

April Patch Tuesday is nearly here with two significant topics of concern. The first relates to end-of-service milestones and the second issue is browser exploits. Let’s start with end-of-service....

PoC Exploits Released for Unpatched Edge, IE Vulnerabilities
2019-04-02 12:41

A researcher has released proof-of-concept (PoC) exploits for unpatched same-origin policy bypass vulnerabilities affecting Microsoft’s Internet Explorer and Edge web browsers. read more