Security News

Critical Flaw in Acronis Cyber Infrastructure Exploited in the Wild
2024-07-29 16:17

Cybersecurity company Acronis is warning that a now-patched critical security flaw impacting its Cyber Infrastructure product has been exploited in the wild. The flaw impacts the following versions of Acronis Cyber Infrastructure -.

Critical Acronis Cyber Infrastructure vulnerability exploited in the wild (CVE-2023-45249)
2024-07-29 12:38

CVE-2023-45249, a critical vulnerability affecting older versions of Acronis Cyber Infrastructure, is being exploited by attackers. Acronis Cyber Infrastructure is an IT infrastructure solution that provides storage, compute, and network resources.

Acronis warns of Cyber Infrastructure default password abused in attacks
2024-07-26 16:39

Acronis warned customers to patch a critical Cyber Infrastructure security flaw that lets attackers bypass authentication on vulnerable servers using default credentials. Acronis Cyber Protect is a unified multi-tenant platform that combines remote endpoint management, backup, and virtualization capabilities and helps run disaster recovery workloads and store enterprise backup data securely.

BIND 9.20 released: Enhanced DNSSEC support, application infrastructure improvements
2024-07-25 06:51

BIND 9.20, a stable branch suitable for production use, has been released. In BIND 9.16, the developers introduced a new networking manager using libuv as an asynchronous event handler on top of the existing application infrastructure.

New ICS Malware 'FrostyGoop' Targeting Critical Infrastructure
2024-07-23 10:54

Cybersecurity researchers have discovered what they say is the ninth Industrial Control Systems (ICS)-focused malware that has been used in a disruptive cyber attack targeting an energy company in...

Two Russians sanctioned over cyberattacks on US critical infrastructure
2024-07-22 12:02

Yuliya Vladimirovna Pankratova and Denis Olegovich Degtyarenko, named by the US government as CARR's leader and attacker-in-chief respectively, were designated for their alleged roles in attacks on US critical national infrastructure. Despite much of CARR's work since its inception in 2022 revolving around what the US Department of the Treasury describes as "Low-impact, unsophisticated DDoS attacks in Ukraine," the group was blamed for various attacks on US and European water facilities earlier this year.

Ransomware continues to pile on costs for critical infrastructure victims
2024-07-17 15:01

Costs associated with ransomware attacks on critical national infrastructure organizations skyrocketed in the past year. There's a good chance that the numbers would be skewed if 100 percent of the total CNI ransomware victims polled were entirely transparent with their figures.

Chinese and N. Korean Hackers Target Global Infrastructure with Ransomware
2024-06-26 10:13

Threat actors with suspected ties to China and North Korea have been linked to ransomware and data encryption attacks targeting government and critical infrastructure sectors across the world...

Critical RCE Vulnerability Discovered in Ollama AI Infrastructure Tool
2024-06-24 13:52

Cybersecurity researchers have detailed a now-patch security flaw affecting the Ollama open-source artificial intelligence (AI) infrastructure platform that could be exploited to achieve remote...

Notorious cyber gang UNC3944 attacks vSphere and Azure to run VMs inside victims' infrastructure
2024-06-17 06:34

Your profile can be used to present content that appears more relevant based on your possible interests, such as by adapting the order in which content is shown to you, so that it is even easier for you to find content that matches your interests. Content presented to you on this service can be based on your content personalisation profiles, which can reflect your activity on this or other services, possible interests and personal aspects.