Zephyrnet Logo

Tag: vuln

Apple Macs Have a Fatal Flaw That Lets Hackers Steal Your Crypto—And There’s No Fix – Decrypt

Hackers have a new way to try and steal your crypto—and if you're using an Apple device made in the last half decade, there's...

Top News

Russian Fancy Bear APT Exploited Unpatched Cisco Routers to Hack US, EU Gov’t Agencies

As recently as 2021, the notorious Russian APT28 was exploiting network routers running outdated versions of Cisco's IOS and IOS XE operating system software,...

Unpatched Zero-Day Bugs in Smart Intercom Allow Remote Eavesdropping

A popular smart intercom and videophone from Chinese company Akuvox, the E11, is riddled with more than a dozen vulnerabilities, including a critical bug...

Machine Learning Improves Prediction of Exploited Vulnerabilities

A public effort to create a way of predicting the exploitation of vulnerabilities announced a new machine learning model that improves its prediction capabilities...

CISA: ZK Java Framework RCE Flaw Under Active Exploit

A high-severity authentication bypass vulnerability in a widely used open source Java framework is under active exploit by threat actors, who are using the...

Majority of Ransomware Attacks Last Year Exploited Old Bugs

Many vulnerabilities that ransomware operators used in 2022 attacks were years old and paved the way for the attackers to establish persistence and move...

OT Network Security Myths Busted in a Pair of Hacks

S4x23 — Miami — As IT and operational technology (OT) network lines continue to blur in the rapidly digitalized industrial sector, new vulnerabilities and...

Patch Critical Bug Now: QNAP NAS Devices Ripe for the Slaughter

UPDATE A critical security vulnerability in QNAP's QTS operating system for network-attached storage (NAS) devices could allow cyberattackers to inject malicious code into devices remotely,...

Password-stealing “vulnerability” reported in KeePass – bug or feature?

by Paul Ducklin It’s been a newsworthy few weeks for password managers – those handy utilities that help you come...

Microsoft Issues 51 CVEs for Patch Tuesday, None ‘Critical’

One publicly known flaw — an elevation-of-privilege bug in Windows Kernel — was included in the patches.

Log4Shell-like security hole found in popular Java SQL database engine H2

"It's Log4Shell, Jim, but not as we know it." How to find and fix a JNDI-based vuln in the H2 Database Engine.

ICS Vulnerability Reports Rapidly Rise

More scrutiny of products for industrial control systems is expected to expose even more weaknesses in devices that run critical infrastructure. It started...

Kr00k, KRACK, and the Seams in Wi-Fi, IoT Encryption

Black Hat talk expands on research that uncovered more weaknesses in Wi-Fi chips allowing for the unauthorized decryption of traffic.Earlier this year, two...

Latest Intelligence

spot_img
spot_img