Severity High Analysis Summary Researchers has attributed a recent campaign leveraging malicious LNK files in its infection chain to the Higaisa APT. The initial LNK file, […]
Severity Medium Analysis Summary A PowerShell script (mailer script) has been seen propagating the distribution of Lemon Duck through weaponized COVID-19 themed emails by researchers. Like […]
Severity Medium Analysis Summary CVE-2020-8478 The vulnerability is caused by weak access control settings for objects used to exchange information between System 800xA processes on the […]
Severity High Analysis Summary The vulnerability is due to insufficient validation of signaling packets that are destined to VDS. An attacker could exploit this vulnerability by […]
Severity High Analysis Summary The vulnerability is due to incorrect handling of requests for authorization tokens. An attacker could exploit this vulnerability by using a crafted […]
Severity High Analysis Summary Beginning in January 2020, a campaign was detected that employed advanced obfuscation to evade detection. Using Microsoft Excel hidden sheets, the malicious […]
Severity Medium Analysis Summary CVE-2020-6493 Google Chrome could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free in WebAuthentication. By […]
Severity Medium Analysis Summary Researchers report indicating that over 1.3 million sites were part of an attack campaign that generated over 130 million attempts to harvest […]
Severity High Analysis Summary Node.js is vulnerable to a buffer overflow, caused by multiple memory corruptions in the napi_get_value_string_latin1(), napi_get_value_string_utf8(), or napi_get_value_string_utf16() functions. By sending an […]