Cybersecurity

QNAP Patches High-Severity Flaws in QTS, Video Station, QuMagie, Netatalk Products

Taiwan-based QNAP Systems on Friday announced patches for a dozen vulnerabilities across its product portfolio, including high-severity flaws in its operating system. The first of the high-severity issues is CVE-2023-39296, which is described as a prototype pollution flaw that could allow remote attackers “to override existing attributes with ones that have an incompatible type, which […]

Cybersecurity

Online services down for German craft associations following ‘security incident’

The websites and online services for multiple Chambers of Crafts in Germany are down following a “security incident” that appears to have impacted a managed service provider. A statement on the parent organization’s website, which is still online, says that the cyberattack affected an unidentified IT service’s data center and was discovered during the first […]

Cybersecurity

LockBit claims November attack on New Jersey hospital that disrupted patient care

The LockBit ransomware gang took credit for a November attack on a hospital system that forced multiple facilities in New Jersey and Pennsylvania to cancel appointments and operate without patient files. This weekend, LockBit posted Capital Health to its extortion website, threatening to leak seven terabytes of stolen data from the company. The gang claimed […]

Cybersecurity

Researchers Disclose New Lumma Stealer Campaign Distributed via YouTube | Cyware Hacker News

FortiGuard Labs researchers recently encountered a new Lumma Stealer campaign that leverages YouTube channels for propagation. The attackers are strategically compromising YouTube accounts and uploading videos that pretend to offer cracked software for legitimate video editing tools such as Vegas Pro. Modus operandi According to researchers, these videos contain embedded malicious URLs, enticing users to […]