October 2021

Apache Releases Patches to a Zero-Day Exploit in the Wild

Apache has issued patches to two security vulnerabilities which is tracked as CVE-2021-41773. This vulnerability affects only Apache HTTP server version 2.4.49. Ash Daulton and cPanel Security Team have been credited with discovering and reporting the issue on September 29, 2021. With this flaw, an attacker could use a path traversal attack to map URLs

Apache Releases Patches to a Zero-Day Exploit in the Wild Read More »

Google Plans To Implement A 2-factor Authentication by Default for 150million of its Users

Google is currently making plans to enroll about 150 million users into its two-factor authentication scheme by the end of the year in an aim to prevent unauthorized access to accounts and improve security. Google will also be requiring 2 million YouTube creators to switch on the setting which it calls two-step verification (2SV), and

Google Plans To Implement A 2-factor Authentication by Default for 150million of its Users Read More »

Ransomware Hackers Responsible For Attacks On Over 100 Companies Arrested in Ukraine

Ransomware operators in Ukraine have been apprehended by Law enforcement agencies. The joint exercise took place on the 28th day of September by officials from the French National Gendarmerie, the Ukrainian National Police, and the U.S. Federal Bureau of Investigation (FBI), alongside participation from the Europol’s European Cybercrime Centre and the INTERPOL’s Cyber Fusion Centre.

Ransomware Hackers Responsible For Attacks On Over 100 Companies Arrested in Ukraine Read More »

Customer Service Desk: An Easy Access For Hackers To Exploit Your Organization

The Customer service week which holds every 1st week of the month of October has come to be recognized as the week we celebrate the importance of customer service and importance of the people who serve and support customers on a daily basis. However in all of these celebrations lest we get carried away, do

Customer Service Desk: An Easy Access For Hackers To Exploit Your Organization Read More »

Fake Amnesty International Antivirus Hacking Systems Now Currently In Circulation

In yet another indicator of how hacking groups are quick to capitalize on world events and improvise their attack campaigns for maximum impact, threat actors have been discovered impersonating Amnesty International to distribute malware that purports to be a security software designed to safeguard against NSO Group’s Pegasus surveillanceware. Hacking groups have never failed at

Fake Amnesty International Antivirus Hacking Systems Now Currently In Circulation Read More »

Demodex: The New Rootkit Used by Chinese Hackers to Spy on Targeted Windows 10 Users

An operation aimed at South East Asian targets back in July 2020 to deploy a kernel-mode rootkit on compromised Windows systems has been linked to a Chinese-speaking threat actor. The hacking group nicknamed GhostEmperor by Kaspersky has been known to use “sophisticated multi-stage malware framework” allowing a persistent and remote control over the targeted hosts.

Demodex: The New Rootkit Used by Chinese Hackers to Spy on Targeted Windows 10 Users Read More »

A Current Flaw in Apple Pay is Enabling Attackers Perform Unauthorized Contactless Payments

An unpatched flaw in Apple Pay has been disclosed by Cybersecurity researchers giving attackers the ability to make an unauthorized Visa payment with a locked iPhone via the Express Travel mode setup in the device’s wallet. All that is needed is the mobile phone to be on and also transactions could be relayed from an

A Current Flaw in Apple Pay is Enabling Attackers Perform Unauthorized Contactless Payments Read More »