Recent Security News

  • New PoC Exploit for Apache ActiveMQ Flaw Could Let Attackers Fly Under the Radar

    November 15, 2023 at 09:45AM A critical security flaw in Apache ActiveMQ, tracked as CVE-2023-46604, allows threat actors to execute arbitrary code in memory. The flaw has been exploited by ransomware groups, deploying ransomware like HelloKitty and a strain similar to TellYouThePass, as well as a remote access trojan called SparkRAT. The attacks rely on…

    Read More

  • FBI Director: FISA Section 702 warrant requirement a ‘de facto ban’

    November 15, 2023 at 09:10AM FBI Director Christopher Wray urged lawmakers to reject a proposed warrant requirement for accessing data obtained through FISA Section 702. This amendment to the Foreign Intelligence Surveillance Act, which allows warrantless surveillance of foreigners’ communications, also collects information on US persons. Wray emphasized the risks and resource limitations of implementing…

    Read More

  • CISA Outlines AI-Related Cybersecurity Efforts

    November 15, 2023 at 08:58AM The US cybersecurity agency CISA has published a document outlining its efforts to promote the use of artificial intelligence (AI) in enhancing security and supporting critical infrastructure organizations. The document emphasizes the need to protect AI systems from threats and prevent their malicious use. CISA encourages AI system makers to…

    Read More

  • US Announces IPStorm Botnet Takedown and Its Creator’s Guilty Plea

    November 15, 2023 at 08:58AM The US government has taken down the IPStorm botnet and arrested the man responsible for its operation. The botnet distributed malware to thousands of devices worldwide, allowing cybercriminals to use them for a proxy service. The guilty party, Sergei Makinin, faces up to 10 years in prison and has agreed…

    Read More

  • SAP Patches Critical Vulnerability in Business One Product

    November 15, 2023 at 08:58AM SAP has released three new and three updated security notes as part of its November 2023 Security Patch Day. The most important new note addresses a vulnerability in the Business One application, while the updated notes address various vulnerabilities in different SAP products. Customers are advised to apply the patches…

    Read More