Security News

Over 3 million mail servers without encryption exposed to sniffing attacks
2025-01-02 15:54

Over three million POP3 and IMAP mail servers without TLS encryption are currently exposed on the Internet and vulnerable to network sniffing attacks. [...]

Apache Tomcat Vulnerability CVE-2024-56337 Exposes Servers to RCE Attacks
2024-12-24 06:06

The Apache Software Foundation (ASF) has released a security update to address an important vulnerability in its Tomcat server software that could result in remote code execution (RCE) under...

Apache fixes remote code execution bypass in Tomcat web server
2024-12-23 12:33

Apache has released a security update that addresses an important vulnerability in Tomcat web server that could lead to an attacker achieving remote code execution. [...]

APT29 Hackers Target High-Value Victims Using Rogue RDP Servers and PyRDP
2024-12-18 11:15

The Russia-linked APT29 threat actor has been observed repurposing a legitimate red teaming attack methodology as part of cyber attacks leveraging malicious Remote Desktop Protocol (RDP)...

New critical Apache Struts flaw exploited to find vulnerable servers
2024-12-17 18:04

A recently patched critical Apache Struts 2 vulnerability tracked as CVE-2024-53677 is actively exploited using public proof-of-concept exploits to find vulnerable devices. [...]

Are your Prometheus servers and exporters secure? Probably not
2024-12-15 23:58

Plus: Netscaler brute force barrage; BeyondTrust API key stolen; and more Infosec in brief There's a problem of titanic proportions brewing for users of the Prometheus open source monitoring...

Europol Shuts Down Manson Market Fraud Marketplace, Seizes 50 Servers
2024-12-05 14:55

Europol on Thursday announced the shutdown of a clearnet marketplace called Manson Market that facilitated online fraud on a large scale. The operation, led by German authorities, has resulted in...

BT unit took servers offline after Black Basta ransomware breach
2024-12-04 18:37

Multinational telecommunications giant BT Group (formerly British Telecom) has confirmed that its BT Conferencing business division shut down some of its servers following a Black Basta ransomware...

Russia-Linked Turla Exploits Pakistani Hackers' Servers to Target Afghan and Indian Entities
2024-12-04 17:23

The Russia-linked advanced persistent threat (APT) group known as Turla has been linked to a previously undocumented campaign that involved infiltrating the command-and-control (C2) servers of a...

Russian hackers hijack Pakistani hackers' servers for their own attacks
2024-12-04 17:00

The notorious Russian cyber-espionage group Turla is hacking other hackers, hijacking the Pakistani threat actor Storm-0156's infrastructure to launch their own covert attacks on already...