VMware: Plug critical Aria Automation hole immediately! (CVE-2023-34063)
Cyber Security Blogs A critical vulnerability (CVE-2023-34063) affecting VMware Aria Automation and VMware Cloud Foundation can be exploited by attackers to gain access to remote organizations and workflows, VMware has warned. The company is not aware of any “in the wild” exploitation of this flaw – for now. Patches are available and VMware recommends upgrading
- Published in RSS blog posts
NCSC Builds New “Cyber League” Threat Tracking Community
Cyber Security BlogsThe UK’s National Cyber Security Centre has launched a Cyber League to monitor emerging cyber-threats Read More
- Published in RSS blog posts
Israel’s Largest Oil Refinery, Bazan Group, Hit by Anonymous Sudan
Cyber Security Blogs The notorious hacking group, Anonymous Sudan, has taken credit for a “huge” cyberattack on Bazan Group, formerly known as Oil Refineries Ltd, Israel’s leading oil refining and petrochemicals company. The Bazan Group cyberattack, aimed at the digital infrastructure of Bazan Group, has raised concerns about the potential implications for Israel’s economic powerhouse.
- Published in RSS blog posts
Swiss Government Websites Hit by Cyberattack; ‘NoName’ Hackers Claim Responsibility
Cyber Security Blogs Swiss government websites were hit by a targeted cyberattack on Wednesday, led by a group known as ‘NoName,’ with ties to Russia. This orchestrated attack, brought to light by Switzerland’s National Cyber Security Centre (NCSC), temporarily disrupted access to several Swiss websites, including those associated with the Swiss Federal Administration. The group
- Published in RSS blog posts
News alert: Incogni study reveals overwhelming majority of spam calls originate locally
Cyber Security Blogs Los Angeles, Calif., Jan. 17, 2024 – Spam calls continue to be a major nuisance in the US, and advice on how to avoid them abound. Incogni’s latest research challenges prevalent assumptions about spam calls, revealing that traditional advice on avoiding specific area codes is largely ineffective. The study, based on the
- Published in RSS blog posts
iShutdown lightweight method allows to discover spyware infections on iPhones
Cyber Security BlogsResearchers devised a “lightweight method,” called iShutdown, to determine whether Apple iOS devices have been infected with spyware. Cybersecurity researchers from Kaspersky have identified a “lightweight method,” called iShutdown, to identify the presence of spyware on Apple iOS devices. The method allow to discover stealthy and poweful surveillance software like NSO Group‘s Pegasus, Intellexa‘s Predator, QuaDream‘s Reign. The researchers focused
- Published in RSS blog posts
Oracle cyber maverick dives into cloud security and AI
Cyber Security Blogs EXECUTIVE SUMMARY: David is the Senior Vice President for the Oracle SaaS Cloud Security engineering and operations organization. Previously, David was the public Cloud Security Engineering Director in the Google Security and Privacy organization and his preceding 18 years were spent with Microsoft in numerous security cloud, product and engineering leadership roles.
- Published in RSS blog posts
Attribute-based encryption could spell the end of data compromise
Cyber Security Blogs The future of data privacy is the end of compromise. With the world producing data at astounding rates, we need ways to put data to the best use while protecting against breaches and ensuring privacy, data protection and access control. These principles are foundational to attribute-based encryption (ABE)—a novel form of encryption
- Published in RSS blog posts
Ulsan HD FC Data Breach Alert: Sensitive Data Allegedly on Sale for $6000
Cyber Security Blogs Ulsan HD FC, formerly known as Ulsan Hyundai FC, a prominent South Korean professional football club based in Ulsan, is currently under scrutiny as reports suggest that its database is allegedly on sale in the cyber underworld. The threat actor, identified as Donald Bucks, posted a message on January 14, 2024, claiming
- Published in RSS blog posts
Alleged Trello Data Breach Raises Concerns: 15 Million User Records on Sale
Cyber Security Blogs A threat actor has emerged, asserting the sale of Trello data comprising 15,115,516 unique lines of information. The alleged Trello data breach has compromised individuals’ emails, usernames, full names, and other account details. Trello, known for its visual project management capabilities, is widely used by teams for efficient workflow and task tracking.
- Published in RSS blog posts










