Cybersecurity

Category Added in a WPeMatico Campaign

Cybersecurity

Government-backed actors exploiting WinRAR vulnerability

When writing contents of the files, WinRAR performs path normalization that removes appended spaces, because Windows doesn’t allow files with trailing spaces. Finally, WinRAR calls ShellExecuteExW, passing the non-normalized path with a trailing space “%TEMP%{random_directory}poc.png_” to run the user-selected file. Internally, ShellExecute attempts to identify file extensions by calling “shell32!PathFindExtension” which fails because extensions with […]

Cybersecurity

North Korean Hackers Exploiting Critical Flaw in DevOps Tool

Cyberwarfare / Nation-State Attacks , DevSecOps , Fraud Management & Cybercrime Pyongyang Hackers Exploiting Critical TeamCity Server Bug Prajeet Nair (@prajeetspeaks) • October 18, 2023     This undated photo shows students at the Mangyongdae Revolutionary School in Pyongyang working on computers. (Image: Korean Central News Agency) North Korean nation-state threat actors are exploiting a […]

Cybersecurity

Microsoft Warns of North Korean Attacks Exploiting JetBrains TeamCity Flaw

Oct 19, 2023Newsroom North Korean threat actors are actively exploiting a critical security flaw in JetBrains TeamCity to opportunistically breach vulnerable servers, according to Microsoft. The attacks, which entail the exploitation of CVE-2023-42793 (CVSS score: 9.8), have been attributed to Diamond Sleet (aka Labyrinth Chollima) and Onyx Sleet (aka Andariel or Silent Chollima). It’s worth […]

Cybersecurity

Google TAG Detects State-Backed Threat Actors Exploiting WinRAR Flaw

Oct 19, 2023NewsroomCyber Threat / Vulnerability A number of state-back threat actors from Russia and China have been observed exploiting a recent security flaw in the WinRAR archiver tool for Windows as part of their operations. The vulnerability in question is CVE-2023-38831 (CVSS score: 7.8), which allows attackers to execute arbitrary code when a user […]

Cybersecurity

Critical Citrix NetScaler Flaw Exploited to Target from Government, Tech Firms

Oct 18, 2023NewsroomEnterprise Security / Vulnerability Citrix is warning of exploitation of a recently disclosed critical security flaw in NetScaler ADC and Gateway appliances that could result in exposure of sensitive information. Tracked as CVE-2023-4966 (CVSS score: 9.4), the vulnerability impacts the following supported versions – NetScaler ADC and NetScaler Gateway 14.1 before 14.1-8.50 NetScaler […]

Cybersecurity

Oracle Patches 185 Vulnerabilities With October 2023 CPU

Oracle on Tuesday announced the release of 387 new security patches as part of the October 2023 CPU, to resolve vulnerabilities affecting its own code and third-party components. More than 40 security patches address critical-severity flaws and more than 200 resolve bugs that can be exploited remotely without authentication, Oracle’s advisory reveals. SecurityWeek has identified […]