The following advisories/alerts from Novacoast are intended to brief users and administrators on newly discovered threats, vulnerabilities, and critical software updates.
Weekly Top 10: 01.20.2025: fasthttp Used in New Bruteforce Campaign; Millions of Accounts Vulnerable Due to Google’s OAuth Flaw; The Great Google Ads Heist, and More.
Weekly Top 10: 01.20.2025: fasthttp Used in New Bruteforce Campaign; Millions of Accounts Vulnerable Due to Google’s…
Weekly Top 10: 01.06.2025: Brain Cipher Ransomware Gang Leaked Data from Rhode Island’s RIBrides Platform; Salt Typhoon Targets U.S. Treasury Department OFAC; Microsoft Issues Warning to .NET Developers, and More.
Weekly Top 10: 01.06.2025: Brain Cipher Ransomware Gang Leaked Data from Rhode Island's RIBrides Platform; Salt…
Weekly Top 10: 12.30.2024: Cybersecurity Firm’s Chrome Extension Hijacked to Steal Users’ Data; New ‘Ottercookie’ Malware Used to Backdoor Devs in Fake Job Offers; White House Links Ninth Telecom Breach to Chinese Hackers, and More.
Weekly Top 10: 12.30.2024: Cybersecurity Firm’s Chrome Extension Hijacked to Steal Users’ Data; New ‘Ottercookie’…
Weekly Top 10: 12.23.2024: Android Malware Delivered via the Amazon Appstore; TP-Link Network Devices Under Investigation by the US DoJ; Play Ransomware Group Takes Credit for Attack on Krispy Kreme, and More.
Weekly Top 10: 12.23.2024: Android Malware Delivered via the Amazon Appstore; TP-Link Network Devices Under…
Weekly Top 10: 12.16.2024: OpenWrt Flaw Allows Distribution of Malicious Firmware; Vulnerability in WPForms Allows for Arbitrary Stripe Refunds; AuthQuake Attack Allows MFA Bypass for Microsoft Accounts, and More.
Weekly Top 10: 12.16.2024: OpenWrt Flaw Allows Distribution of Malicious Firmware; Vulnerability in WPForms Allows…
Weekly Top 10: 12.9.2024: New Windows Zero-Day Exposes NTLM Credentials, Gets Unofficial Patch; Supply Chain Attack Detected in Solana’s web3.js Library; Snowblind: The Invisible Hand of Secret Blizzard, and More.
Weekly Top 10: 12.9.2024: New Windows Zero-Day Exposes NTLM Credentials, Gets Unofficial Patch; Supply Chain Attack…
Weekly Top 10: 11.25.2024: Critical Flaw in End-of-Life D-Link VPN Routers; Actively Exploited RCE Flaw Impacting VMware vCenter; Russian Linked Threat Actor Linked in Cyber Espionage Campaign, and More.
Weekly Top 10: 1.25.2024: Critical Flaw in End-of-Life D-Link VPN Routers; Actively Exploited RCE Flaw Impacting…
Palo Alto Recommends Urgent Mitigation For Authentication Bypass Vulnerability in PAN-OS
Palo Alto Networks recommends patching vulnerable PAN-OS versions and mitigating network access to their management…
Weekly Top 10: 11.18.2024: Microsoft Exchange Adds Warning to Emails Abusing Spoofing Flaw; Evasive ZIP Concatenation: Trojan Targets Windows Users; Microsoft November 2024 Patch Tuesday Fixes 4 Zero-Days, 89 Flaws, and More.
Weekly Top 10: 11.18.2024: Weekly Top 10: 11.18.2024: Microsoft Exchange Adds Warning to Emails Abusing Spoofing…
Weekly Top 10: 11.11.2024: Veeam Backup Exploit Used by Frag Ransomware; North Korean Hackers Use macOS Malware to Steal Crypto; Palo Alto PAN-OS May be Vulnerable to RCE, and More.
Weekly Top 10: 11.11.2024: Veeam Backup Exploit Used by Frag Ransomware; North Korean Hackers Use macOS Malware to…
Weekly Top 10: 11.04.2024: Android Malware ‘FakeCall’ Hijacks Outgoing Calls; PTZ Cameras Being Targeted Using Two Zero-Days; Hacker Group TeamTNT Targets Docker Environments, and More.
Weekly Top 10: 11.04.2024: Android Malware 'FakeCall' Hijacks Outgoing Calls; PTZ Cameras Being Targeted Using Two…
Weekly Top 10: 10.28.2024: Severe Flaws in E2EE Cloud Storage Platforms Used by Millions; ClickFix Tactic: The Phantom Meet; Firm Hacked After Accidentally Hiring North Korean Cyber Criminal, and More.
Weekly Top 10: 10.21.2024: Severe Flaws in E2EE Cloud Storage Platforms Used by Millions; ClickFix Tactic: The…