• Skip to primary navigation
  • Skip to main content
GreyKeep Security logo

GreyKeep Security

Expert security for an evolving digital age

  • Services
  • Our Approach
  • Blog
  • About
  • Contact Us
  • Show Search
Hide Search

Cybersecurity Daily

Cybersecurity Daily: September 20, 2023

greykeep · September 20, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for September 20, 2023.

Advisories

  • Microsoft reveals memory corruption bugs in ‘ncurses’ library
  • Thousands of Juniper devices vulnerable to unauthenticated RCE flaw
  • Payment Card-Skimming Campaign Now Targeting Websites in North America
  • New AMBERSQUID Cryptojacking Operation Targets Uncommon AWS Services
  • APT36 state hackers infect Android devices using YouTube app clones
  • Trend Micro addresses actively exploited zero-day in Apex One and other security Products
  • GitLab Patches Critical Pipeline Execution Vulnerability
  • Qatar Cyber Chiefs Warn on Mozilla RCE Bugs
  • Hackers backdoor telecom providers with new HTTPSnoop malware
  • Critical Security Flaws Exposed in Nagios XI Network Monitoring Software
  • Fortinet FortiOS Flaw Let Attacker Execute Malicious JavaScript Code
  • Atos Unify Vulnerabilities Could Allow Hackers to Backdoor Systems
  • Fresh Wave of Malicious npm Packages Threaten Kubernetes Configs and SSH Keys
[Read more…] about Cybersecurity Daily: September 20, 2023

Cybersecurity Daily: September 14, 2023

greykeep · September 14, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for September 14, 2023.

Advisories

  • Google Rushes to Patch Critical Chrome Vulnerability Exploited in the Wild – Update Now
  • Cybercriminals Using PowerShell to Steal NTLMv2 Hashes from Compromised Windows
  • Microsoft Patches a Pair of Actively Exploited Zero-Days
  • Windows 11 ‘ThemeBleed’ RCE bug gets proof-of-concept exploit
  • Azure HDInsight Flaws Allowed Data Access, Session Hijacking, Payload Delivery
  • Mozilla patches Firefox, Thunderbird against zero-day exploited in attacks
  • New Kubernetes vulnerability allows privilege escalation in Windows
  • Cisco IOS Verification Flaw Let Attackers Execute Arbitrary Code
  • Adobe fixed actively exploited zero-day in Acrobat and Reader
  • N-Able’s Take Control Agent Vulnerability Exposes Windows Systems to Privilege Escalation
  • SolarWinds Platform Vulnerability Let Attackers Execute Arbitrary Commands
  • A new Repojacking attack exposed over 4,000 GitHub repositories to hack
  • Vietnamese Hackers Deploy Python-Based Stealer via Facebook Messenger
  • Microsoft Warns of New Phishing Campaign Targeting Corporations via Teams Messages
[Read more…] about Cybersecurity Daily: September 14, 2023

Cybersecurity Daily: September 8, 2023

greykeep · September 9, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for September 8, 2023.

Advisories

  • Apple patches two zero-days under attack (CVE-2023-41064, CVE-2023-41061)
  • A malvertising campaign is delivering a new version of the macOS Atomic Stealer
  • Cisco BroadWorks impacted by critical authentication bypass flaw
  • Cisco ASA Zero-Day Exploited in Akira Ransomware Attacks
  • Zero-Day Alert: Latest Android Patch Update Includes Fix for Newly Actively Exploited Flaw
  • Researchers Discover Critical Vulnerability in PHPFusion CMS
  • Hackers Target High-Privileged Okta Accounts via Help Desk
  • A zero-day in Atlas VPN Linux Client leaks users’ IP address
  • 9 Alarming Vulnerabilities Uncovered in SEL’s Power Management Products
  • CISA warns of critical Apache RocketMQ bug exploited in attacks
  • CISA Warning: Nation-State Hackers Exploit Fortinet and Zoho Vulnerabilities
  • Google Looker Studio abused in cryptocurrency phishing attacks
  • Multiple ArubaOS vulnerabilities Let Attackers Execute Arbitrary Code
[Read more…] about Cybersecurity Daily: September 8, 2023

Cybersecurity Daily: August 30, 2023

greykeep · August 30, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for August 30, 2023.

Advisories

  • VMware Aria vulnerable to critical SSH authentication bypass flaw
  • Threat actors started exploiting Juniper flaws shortly after PoC release
  • Hacking campaign bruteforces Cisco VPNs to breach networks
  • High-Severity Memory Corruption Vulnerabilities Patched in Firefox, Chrome
  • Unpatched Citrix NetScaler Devices Targeted by Ransomware Group FIN8
  • DreamBus malware exploits RocketMQ flaw to infect servers
  • Roblox and Rust Developers Targeted With Malicious Packages
  • China-Linked BadBazaar Android Spyware Targeting Signal and Telegram Users
  • Threat Actors Abuse Google Groups to Send Fake order Notifications
  • Attackers can discover IP address by sending a link over the Skype mobile app
  • BGP Flaw Can Be Exploited for Prolonged Internet Outages
[Read more…] about Cybersecurity Daily: August 30, 2023

Cybersecurity Daily: August 24, 2023

greykeep · August 24, 2023 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for August 24, 2023.

For the latest news on malware and ransomware, check out our weekly Malware Roundup.

Advisories

  • More than 3,000 Openfire servers exposed to attacks using a new exploit
  • Hackers use public ManageEngine exploit to breach internet org
  • New stealthy techniques let hackers gain Windows SYSTEM privileges
  • New Variant of XLoader macOS Malware Disguised as ‘OfficeNote’ Productivity App
  • Ivanti Issues Fix for Critical Vuln in Its Sentry Gateway Technology
  • Adobe Patches Critical Deserialization Vulnerability, but Exploits Persist
  • New Juniper Junos OS Flaws Expose Devices to Remote Attacks – Patch Now
  • Akira ransomware gang spotted targeting Cisco VPN products to hack organizations
  • FBI: Patches for Recent Barracuda ESG Zero-Day Ineffective
  • Traders Targeted by Cybercriminals in Attack Exploiting WinRAR Zero-Day
  • Rockwell ThinManager Vulnerabilities Could Expose Industrial HMIs to Attacks
  • New Telegram Bot “Telekopye” Powering Large-scale Phishing Scams from Russia
  • TP-Link Tapo L530E smart bulb flaws allow hackers to steal user passwords
  • Apache XML Graphics Batik Flaw Exposes Sensitive Information
  • FBI Warns of Cryptocurrency Heists by North Korea’s Lazarus Group
  • Attackers Dangle AI-Based Facebook Ad Lures to Hijack Business Accounts
[Read more…] about Cybersecurity Daily: August 24, 2023
  • « Go to Previous Page
  • Page 1
  • Page 2
  • Page 3
  • Go to Next Page »

How can we help you become more secure? Contact Us

GreyKeep Security

© 2025 GreyKeep Security LLC · All Rights Reserved

  • Services
  • Our Approach
  • GreyKeep Security Blog
  • About Us
  • Contact Us