Severity Medium Analysis Summary Attackers have created a fake Office 365 site that is distributing the TrickBot password-stealing Trojan disguised as Chrome and Firefox browser updates. […]
Severity Medium Analysis Summary Squid is prone to multiple cross-site scripting vulnerabilities because it fails to sanitize user-supplied input. An attacker may leverage these issues to […]
Severity High Analysis Summar A phishing campaign conducted by APT34, an Iranian-nexus threat actor. Three key attributes caught with this particular campaign: Masquerading as a member […]
Severity Medium Analysis Summary Some services have an unquoted service path. If an authenticated user is able to insert code in the system root path, that […]
Severity Medium Analysis Summary The vulnerability is due to insufficient validation of arguments passed to a specific CLI command on the affected device. An attacker could […]
Severity High Analysis Summary The vulnerability is due to insufficient validation of HTTP requests. An attacker could exploit this vulnerability by sending a crafted HTTP request […]
Severity High Analysis Summary “Sea Turtle” DNS hijacking campaign and their continuing efforts to compromise victims. The operators behind the campaign have adopted a new DNS […]
Severity Medium Analysis Summary A new, fully undetected Linux backdoor implant, containing rarely seen functionalities with regards to Linux malware, targeting desktop users. The evidence shows […]
Severity High Analysis Summary A campaign recently identified and attribute to the Buhtrap Group. These threat actors have been linked to campaigns against Russian financial institutions […]