Researchers Uncover TLS Bootstrap Attack on Azure Kubernetes Clusters
“An attacker with command execution in a Pod running within an affected Azure Kubernetes Services cluster could download the configuration used to
CISA to Get New $524 Million Headquarters in DC, Backed by Inflation Reduction Act Funding
The General Services Administration has selected a construction company to build CISA’s new headquarters in Washington DC.
The post CISA to Get New $524 Million Headquarters in DC, Backed by Inflation Reduction Act Funding appeared first on SecurityWeek.
Iranian Cyber Group TA453 Targets Jewish Leader with New AnvilEcho Malware
Enterprise security company Proofpoint is tracking the activity under the name TA453, which overlaps with activity tracked by the broader cybersecurity
F5 Patches High-Severity Vulnerabilities in BIG-IP, NGINX Plus
F5’s latest quarterly security notification includes nine advisories, including four for high-severity vulnerabilities in BIG-IP and NGINX Plus.
The post F5 Patches High-Severity Vulnerabilities in BIG-IP, NGINX Plus appeared first on SecurityWeek.
Blind Eagle Hackers Exploit Spear-Phishing to Deploy RATs in Latin America
Targets of these attacks span several sectors, including governmental institutions, financial companies, energy and oil and gas companies.
“Blind Eagle has demonstrated adaptability in
Thousands of Oracle NetSuite Sites at Risk of Exposing Customer Information
“A potential issue in NetSuite’s SuiteCommerce platform could allow attackers to access sensitive data due to misconfigured access controls on custom record types (CRTs),” AppOmni’s Aaron Costello
CISA Warns of Critical Jenkins Vulnerability Exploited in Ransomware Attacks
The vulnerability, tracked as CVE-2024-23897 (CVSS score: 9.8), is a path traversal flaw that could lead to code execution.
“Jenkins Command Line Interface (CLI) contains a
Windows driver zero-day exploited by Lazarus hackers to install rootkit
US Intelligence Officials Say Iran is to Blame for Hacks Targeting Trump, Biden-Harris Campaigns
The assessment from agencies was the first time the U.S. government assigned blame for hacks that have raised anew the threat of foreign election interference.
The post US Intelligence Officials Say Iran is to Blame for Hacks Targeting Trump, Biden-Harris Campaigns appeared first on SecurityWeek.
