Flaw

China suspends Alibaba Cloud over failure to report Log4j flaw

China’s internet regulator, the Ministry of Industry and Information Technology (MIIT), has temporarily suspended the partnership with Alibaba Cloud for… Read More

2 years ago

Belgian Defense Ministry hit by cyberattack exploiting Log4j flaw

The Belgian defense ministry announced that it was hit by a cyberattack where the threat actors have exploited the Log4Shell… Read More

2 years ago

Apache Releases Third Major Log4j Update To Fix A DoS Flaw

Apache has released another update shortly after the second Log4j update addressing a previously “incomplete… Apache Releases Third Major Log4j… Read More

2 years ago

Hackers Begin Exploiting Second Log4j Vulnerability as a Third Flaw Emerges

Even more troublingly, researchers at Praetorian warned of a third separate security weakness in Log4j version 2.15.0 that can "allow… Read More

2 years ago

New tool offers Log4j flaw mitigation for systems that can't be updated immediately

Cybereason released a mitigation tool named Logout4shell. It is freely available on GitHub and Cybereason said it "is a relatively… Read More

2 years ago

Flaw in Widely Used Java-based Logging Utility Poses Grave Threat to Multiple Applications

Exploit code has been released for a serious code-execution vulnerability in Log4j, which is used by large enterprises and also… Read More

2 years ago

Kafdrop flaw allows data from Kafka clusters to be exposed Internet-wide

Researchers at Spectral discovered a security flaw in Kafdrop, a popular open-source UI and management interface for Apache Kafka clusters,… Read More

2 years ago

Critical Wormable Security Flaw Found in Several HP Printer Models

The two weaknesses — collectively called Printing Shellz — were discovered and reported to HP by F-Secure Labs researchers Timo… Read More

2 years ago

Hackers used this software flaw to steal credit card details from thousands of online retailers

Over 4,000 online retailers have been warned that their websites had been hacked by cybercriminals trying to steal payment information… Read More

2 years ago

Hackers Using Microsoft MSHTML Flaw to Spy on Targeted PCs with Malware

A new Iranian threat actor has been found exploiting a patched critical flaw in the Microsoft Windows MSHTML platform to… Read More

2 years ago

Starter Templates Plugin Flaw Affected 1M+ WordPress Sites

A major security flaw in Starter Templates Plugin could allow underprivileged authenticated users to import… Starter Templates Plugin Flaw Affected… Read More

2 years ago

Sky customers vulnerable to hackers after security flaw on six million routers

The security issue meant internet users with Sky routers were vulnerable to hacks and online attacks for well over a… Read More

2 years ago

FBI Warns of APT Group Exploiting FatPipe VPN Zero-Day Flaw Used for Lateral Movement

The Federal Bureau of Investigation (FBI) warned of an advanced persistent threat (APT) compromising FatPipe router clustering and load balancer… Read More

2 years ago

Netgear fixes code execution flaw in many SOHO devices

Netgear addressed a pre-authentication buffer overflow issue in its SOHO devices that can be exploited by an attacker on the… Read More

2 years ago

Hackers are Exploiting Zero-Day Flaw in macOS: Google Warns

Google observed that hackers were using a watering hole attack. In this attack, the websites targeted are typically selected by… Read More

2 years ago

Google warns hackers used macOS zero-day flaw, could capture keystrokes, screengrabs

Google's Threat Analysis Group (TAG) has revealed that hackers targeting visitors to websites in Hong Kong were using a previously… Read More

3 years ago