An Android package, “Showcase.apk,” preinstalled on a significant portion of Pixel devices since 2017, possesses extensive system permissions enabling remote code execution and package installation. It fetches a configuration file
Monthly Archives: August 2024
Kubernetes Vulnerability Exposes Clusters to Command Injection Attacks
A recently discovered vulnerability in Kubernetes has raised significant concerns within the cybersecurity community. Akamai researcher Tomer Peled identified a design flaw in Kubernetes’ sidecar project, git-sync, which could allow
Zimbra XSS Flaw Allows Hackers to Execute Malicious JavaScript Code
A critical security flaw has been discovered in the Zimbra Collaboration Suite (ZCS), potentially allowing hackers to execute malicious JavaScript code. This cross-site scripting (XSS) flaw, identified as CVE-2024-33533, has
Cyber Alert! Small Businesses Should Enhance Their Cyber Defenses – NCSC Guide (PDF)
In a recent revelation, law enforcement figures have highlighted a concerning rise in cyber attacks targeting small businesses. The City of London Police reported 1,227 incidents in 2022, which experts
‘EastWind’ Cyber-Spy Campaign Combines Various Chinese APT Tools
How to Investigate Emerging Cyber Threats in 2024 – SOC/DFIR Team Guide
In the rapidly evolving world of cybersecurity, emerging threats pose significant challenges to organizations worldwide. These threats, characterized by their novelty and complexity, often exploit new vulnerabilities and technologies, making
One Click on a Malicious Site Could Exploit Chrome V8 Engine RCE Vulnerability
A critical security vulnerability identified as CVE-2024-5830 has been discovered in Chrome’s V8 JavaScript engine. The flaw, initially reported in May 2024 as bug 342456991. The vulnerability is a type
Kootenai Health Ransomware Attack: 464,000 patients Data Exposed
Kootenai Health, a prominent healthcare provider located at 2003 Kootenai Health Way, Coeur d’Alene, Idaho, has been the victim of a significant ransomware attack. The attack exposed sensitive information belonging
Zoom Critical Vulnerabilities Let Attackers Escalate Privileges
Zoom Video Communications has disclosed several critical vulnerabilities affecting its Workplace Apps, SDKs, and Rooms Clients. These vulnerabilities, identified in multiple security bulletins, potentially allow attackers to escalate privileges on