Browsing tag

SECURITY NEWS

Wireshark 3.0.7 Released – Fixes for Security Vulnerabilities & Update for BGP, IEEE 802.11, TLS Protocols

Wireshark 3.0.7 released with a number of security updates and fixed several other bugs that reside in the Wireshark components. Wireshark also updated Protocol Support for various protocols such as BGP, HomePlug AV, IEEE 802.11, and TLS. Wireshark is known as the world’s most popular network protocol analyzer. It is used for troubleshooting, analysis, development, […]

New Malware Attack Targeting 60 Million WordPress Websites to add Backdoor & Exploit Plugins Vulnerability

Researchers discovered an ongoing malvertising campaign targeting millions of WordPress websites to infect with backdoor and exploiting the various WordPress plugins vulnerabilities. According to WordPress, there are nearly 60 million Websites power by WordPress content management system and hundreds of WordPress Plugins are installed that developers by various developers around the globe. Cybercriminals launch the […]

Japan’s 7-Eleven Store Customers lose ¥55 million

The operator of Seven-Eleven store operators in Japan said Thursday that some 900 customers using their mobile payment services could lose 55 million yen (the US $ 510,000) due to unauthorized access to their accounts. The problem was soon noted after the operators, Seven & i Holdings Co., launched the “7pay” smartphone payment service on […]

Ryuk Ransomware Variant Blacklists IP Addresses, Computers

A new variant of the Ryuk ransomware, which blacklists IP addresses and computers and thus simplifies the infection process, has been detected. MalwareHunterTeam had discovered this new sample which adds IP address and computer blacklisting so that the matching computers will not be encrypted. A BleepingComputer report dated June 19, 2019 says, “A new variant […]

Facebook Offers to Pay Users for Sharing Information

Facebook invited lots of criticism earlier this year for having paid users in the 13 to 35 age group for permission to install a “Facebook Research” VPN on their phones. The users were paid up to $20 a month. Upon being widely criticized for accessing data of such users, Facebook had to defend its stand. […]

Microsoft Warns Users About Ongoing Email Spam Campaign

Microsoft warns users about an ongoing email spam campaign that abuses an Office vulnerability and seems to target European users. The malware, it is reported, is spread through infected RTF documents attached to emails. ZDNet reports, “Microsoft’s security researchers have issued a warning on Friday afternoon about an ongoing spam wave that is spreading emails […]

WhatsApp Will Never be Safe, Says Telegram Founder

In a direct attack on WhatsApp, Telegram founder Pavel Durov has stated that the Facebook-owned WhatsApp would never be safe. In a statement that he had written on Telegraph Pavel Durov points out that hackers could access anything- photos, emails, texts etc- on any phone that had WhatsApp installed on it. He even discusses the […]

Facebook Stored User Passwords in Plain Text for Years!

Facebook had for years stored hundreds of millions of user passwords in plain text, according to a recent report. Brian Krebs has, through his website KrebsOnSecurity, made this rather startling revelation. Krebs says, in a report dated 21 March 2019, “Hundreds of millions of Facebook users had their account passwords stored in plain text and […]

Hackers Abusing Legitimate Googlebot Services to Inject Cryptomining Malware

Cybercriminals now abusing the legitimate Googlebot server using fake User-Agent from another Google service to deliver Crypto-currency malware to the target victims network. Googlebot is providing legitimate traffic to the website which is to appear in Google search engine results. Googlebot works by crawling the each and every updated link in your website to allow […]

Microsoft Released Security Updates & Fixed 49 Vulnerabilities that Affected Microsoft Products

Microsoft released security update under patch Tuesday that affected many of its products along with certain critical Windows zero-day flaw. There are 3 Zero-day vulnerability has been fixed along with more than 49 vulnerabilities that affected Microsoft products such as products such as Windows, Edge, Internet Explorer, Office, Exchange Server, and .NET Core, Power Shell […]

Cyber-crime is a major threat in the financial crimes

The new technical advancements in the new generation benefit the consumers in several ways, but it also causes an equal amount of damages. And the banks have reported that the major financial crimes faced by them are due to the political upheaval and cyber-crime. The report was released after surveying more than 150 professionals across […]

Secure Phone App Library Highly Vulnerable

People who are using a different telephone apps on their cell phones need to be cautious, as a researcher has indicated vulnerabilities related to ZRTPCCP which is a huge security library. For this reason they need to get their security systems upgraded. Mark Dowd who is a researcher at Azimuth security has gone on to […]

Websites of Pakistan Army, Vatican Catholic Church and Italian Chamber of Commerce Vulnerable to SQL Injection

A hacker going with the handle of @WilyXem on Twitter has claimed to found SQL vulnerabilities on the official website of Pakistan Army,  Vatican Catholic Church and  Italian Chamber of Commerce. WilyXem explained that these vulnerabilities can be further exploited easily to deface or access the secret information on the server. Details of each vulnerability with its screenshot is mentioned below, […]

WordPress Default Leaves Millions of Sites Vulnerable to DDoS Attacks

Over the weekend Incapsula mitigated a unique DDoS attack against a large gaming website, in which WordPress played a key role, yet again. Typically, such application layer DDoS attacks are carried out by host botnets, but this time team Incapsula were surprised to see that the attack originated from approximately 2,500 WordPress sites, including some very […]

Pakistani Researcher Founds Critical XSS Vulnerability on Brazzers, BMW, Toyota and Ford Website

Earlier I updated readers with latest vulnerabilities that were found on IndiaTimes and ASK.com by a Pakistani security researcher Danish Tariq, this time he is back with couple of more vulnerabilities.  Danish claims to have found critical cross site scripting vulnerability (XSS) on Brazzers.com, leaving the paid customer to loose thousands of dollars in few seconds. Brazzers.com […]

Hacker Maps Internet by Enslaving Thousands of Vulnerable Machines

A security researcher has raveled some fantastic results over the percentage of vulnerable networks and devices around the world. His technique as a hacker was pretty straightforward and was a big time a matter of concern for all the people around the world. Let’s then see what the researcher found through his researches and how was he […]

Huawei 3G and 4G USB Modems Vulnerable and a Security Threat

A Russian security researcher Nikita Tarakanov has found Huawei’s 3G and 4G devices vulnerable to the hackers. He has reported this matter to Black hat Europe. According to the researcher, Huawei’s sever update is one of the tools for hackers to lay down an attack on the systems. The server update was made in Netherland […]

XSS Vulnerability found on 2shared.com by Virus_Hima, who Hacked Yahoo last year

An Egyptian ethical hacker Virus_Hima who got famous after founding vulnerabilities in Adobe and breaching Yahoo server, last year; is back with another detailed report on XSS Vulnerability on file sharing and storage site 2shared.com. Virus_Hima who doesn’t sell the vulnerabilities or exploits online, has claimed to be in touch with the 2shared.com administration via email, explaining them about the vulnerability and how it […]