Severity High Analysis Summary An APT group yet undisclosed has gained access to government networks by combining VPN and Windows bugs. Attacks have targeted federal and […]
Severity High Analysis Summary The Qbot botnet is using a new template for the distribution of their malware that uses a fake Windows Defender Antivirus theme […]
Severity High Analysis Summary A RYUK infection is seen targeting victims with a malicious email that carried a link to download the Bazar/Kegtap loader, which injects […]
Severity High Analysis Summary CVE-2020-13955 Apache Calcite is vulnerable to a man-in-the-middle attack, caused by disabled hostname verification for HTTPS connections in the HttpUtils#getURLConnection method. An […]
Severity High Analysis Summary CVE-2020-3535 The vulnerability is due to incorrect handling of directory paths at run time. An attacker could exploit this vulnerability by placing […]
Severity Medium Analysis Summary CVE-2020-16850 Mitsubishi MELSEC IQ-R series is vulnerable to a denial of service, caused by uncontrolled resource consumption. By sending specially-crafted packets, a […]
Severity Medium Analysis Summary Apache HttpClient could allow a remote attacker to bypass security restrictions, caused by the improper handling of malformed authority component in request […]
Severity High Analysis Summary TrickBot is a banking Trojan which targets sensitive information and acts as a dropper for other malware. Trickbot is usually spread via […]
Severity High Analysis Summary A previous cryptojacker campaign, Kingminer, landed on victims via brute-forced SQL server accounts and performed its actions with Defense Evasion in mind. […]