• Skip to primary navigation
  • Skip to main content
GreyKeep Security logo

GreyKeep Security

Expert security for an evolving digital age

  • Services
  • Our Approach
  • Blog
  • About
  • Contact Us
  • Show Search
Hide Search

News

Cybersecurity Daily: January 17, 2024

greykeep · January 17, 2024 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for January 17, 2024.

Alerts & Advisories

  • Ivanti Zero-Day Exploits Skyrocket Worldwide; No Patches Yet
  • Alert: Over 178,000 SonicWall Firewalls Potentially Vulnerable to Exploits – Act Now
  • GitHub Rotates Credentials in Response to Vulnerability
  • Opera MyFlaw Bug Could Let Hackers Run ANY File on Your Mac or Windows
  • MacOS info-stealers quickly evolve to evade XProtect detection
  • Cisco Fixes High-Risk Vulnerability Impacting Unity Connection Software
  • CISA adds patched MS SharePoint server vulnerability to KEV catalog
  • WordPress Plugin Flaw Exposes 300,000+ to Hack Attacks
  • Cryptominers Targeting Misconfigured Apache Hadoop and Flink with Rootkit in New Attacks
  • Critical RCE Vulnerability Uncovered in Juniper SRX Firewalls and EX Switches
  • Citrix warns of new Netscaler zero-days exploited in attacks
  • Google fixes actively exploited Chrome zero-day (CVE-2024-0519)
  • VMware patches critical access control vulnerability in Aria Automation
  • Atlassian Warns of Critical RCE Vulnerability in Outdated Confluence Instances
  • Oracle Patches 200 Vulnerabilities With January 2024 CPU
  • New Bluetooth vulnerability allows takeover of iOS, Android, Linux, and MacOS devices
  • Experts warn of a vulnerability affecting Bosch BCC100 Thermostat
[Read more…] about Cybersecurity Daily: January 17, 2024

Weekly Malware Roundup – January 15, 2024

greykeep · January 16, 2024 ·

GreyKeep Security Malware Roundup - September 5, 2023

This is the GreyKeep Security Malware Roundup for January 8, 2024. Here’s a summary of what’s in this week’s edition:

Targets

MSSQL Server
Windows
WordPress
Apple Mac
YouTube
Apache Hadoop
Apache Flink
NAS devices

Organizations

Quantum RadiologyIran

Threat Actors

RE#TURGENCE (Turkey)Water Curupira
[Read more…] about Weekly Malware Roundup – January 15, 2024

Cybersecurity Daily: January 10, 2024

greykeep · January 10, 2024 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for January 10, 2024.

Alerts & Advisories

  • Hackers target Microsoft SQL servers in Mimic ransomware attacks
  • Ivanti patches critical EPM flaw that could allow hackers to hijack managed devices
  • Microsoft Ships Urgent Fixes for Critical Flaws in Windows Kerberos, Hyper-V
  • CISA Flags 6 Vulnerabilities – Apple, Apache, Adobe , D-Link, Joomla Under Attack
  • Kyocera Device Manager Vulnerability Exposes Enterprise Credentials
  • Cacti Monitoring Tool Spiked by Critical SQL Injection Vulnerability
  • Multiple QNAP High-Severity Flaws Let Attackers Execute Remote Code
  • Microsoft January 2024 Patch Tuesday fixes 49 flaws, 12 RCE bugs
  • Android’s January 2024 Security Update Patches 58 Vulnerabilities
  • SAP’s First Patches of 2024 Resolve Critical Vulnerabilities
  • Beware Weaponized YouTube Channels Spreading Lumma Stealer
[Read more…] about Cybersecurity Daily: January 10, 2024

Weekly Malware Roundup – January 8, 2024

greykeep · January 9, 2024 ·

GreyKeep Security Malware Roundup - September 5, 2023

This is the GreyKeep Security Malware Roundup for January 8, 2024. Here’s a summary of what’s in this week’s edition:

Targets

iPhone
MacOS
Android
Chromium
Windows
MSIX App Installer
Python / PyPI

Organizations

Banking industry
US infrastructure
Ukraine government
Xerox
Orange Spain
loanDepot
Capital Health
Toronto Zoo

Threat Actors

Lazarus (N. Korea)
Fancy Bear / APT28 (Russia)
Sandworm (Russia)
UAC-0050
Kimsuky (N. Korea)
Sea Turtle (Turkey)
Anonymous Arabic (Syria)
GXC Team
[Read more…] about Weekly Malware Roundup – January 8, 2024

Cybersecurity Daily: January 4, 2024

greykeep · January 4, 2024 ·

GreyKeep Security Cybersecurity Daily News

Your daily dose of relevant cybersecurity advisories, industry news, and product updates for January 4, 2024.

Alerts & Advisories

  • Google Patches Six Vulnerabilities With First Chrome Update of 2024
  • Google Cloud Resolves Privilege Escalation Flaw Impacting Kubernetes Service
  • ‘Operation Triangulation’ Spyware Attackers Bypass iPhone Memory Protections
  • Microsoft disables online Windows App Installer after attackers abuse it
  • New Variant of DLL Search Order Hijacking Bypasses Windows 10 and 11 Protections
  • Attackers Abuse Google OAuth Endpoint to Hijack User Sessions
  • 650,000+ Malicious Domains Registered Resembling ChatGPT
  • Hacked Mandiant X Account Abused for Cryptocurrency Theft
  • Apache ERP Zero-Day Underscores Dangers of Incomplete Patches
  • Ivanti warns critical EPM bug lets hackers hijack enrolled devices
  • ‘everything’ blocks devs from removing their own npm packages
  • Over 1800 global banking apps targeted by 29 malware variants
  • Experts found 3 malicious packages hiding crypto miners in PyPi repository
[Read more…] about Cybersecurity Daily: January 4, 2024
  • Page 1
  • Page 2
  • Page 3
  • Interim pages omitted …
  • Page 8
  • Go to Next Page »

How can we help you become more secure? Contact Us

GreyKeep Security

© 2025 GreyKeep Security LLC · All Rights Reserved

  • Services
  • Our Approach
  • GreyKeep Security Blog
  • About Us
  • Contact Us