Severity High Analysis Summary When Security Assertion Markup Language (SAML) authentication is enabled and the ‘Validate Identity Provider Certificate’ option is disabled (unchecked), improper verification of […]
Severity High Analysis Summary A newly discovered attack campaign infiltrated a UK-based technology company via tax payment software. The attackers could run Windows commands, create new […]
Severity Medium Analysis Summary An APT campaign targeting Malaysian users that they believe is being carried out by the Leviathan APT (aka ITG09, APT40). The initial […]
Severity High Analysis Summary LokiBot is trojan-type malware designed to infiltrate systems and collect a wide range of information. Lokibot targets Android and Windows operating systems. […]
Severity Medium Analysis Summary Mozilla Firefox for iOS could provide weaker than expected security. The IndexedDB is not cleared when leaving private browsing mode, caused by […]
Severity High Analysis Summary A spear phishing campaign initiated by APT-c-35 group targeting Pakistani official observed by Rewterz threat intelligence forum. As per the detailed analysis, […]
Severity Medium Analysis Summary The Valak Malware is a sophisticated malware previously classified as a malware loader. Though it was first observed in late 2019, researchers […]
Severity High Analysis Summary CVE-2020-14481 The DeskLock tool provided with FactoryTalk View SE uses a weak encryption algorithm that may allow a local, authenticated attacker to […]
Severity High Analysis Summary Emotet is a Trojan that is primarily spread through spam emails (malspam). The infection may arrive either via malicious script, macro-enabled document […]