Cybersecurity

Hackers Exploiting Old MS Excel Vulnerability to Spread Agent Tesla Malware

Dec 21, 2023NewsroomVulnerability / Phishing Attack Attackers are weaponizing an old Microsoft Office vulnerability as part of phishing campaigns to distribute a strain of malware called Agent Tesla. The infection chains leverage decoy Excel documents attached in invoice-themed messages to trick potential targets into opening them and activate the exploitation of CVE-2017-11882 (CVSS score: 7.8), […]

Cybersecurity

#StopRansomware: Play Ransomware | CISA

SUMMARY Note: This joint Cybersecurity Advisory (CSA) is part of an ongoing #StopRansomware effort to publish advisories for network defenders that detail various ransomware variants and ransomware threat actors. These #StopRansomware advisories include recently and historically observed tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) to help organizations protect against ransomware. Visit stopransomware.gov […]

Cybersecurity

37 Vulnerabilities Patched in Android With November 2023 Security Updates

Android patches Google on Monday announced patches for 37 vulnerabilities as part of the November 2023 Android security updates, with additional fixes released for Pixel devices. The first part of the security update will arrive on devices as the 2023-11-01 security patch level, addressing 15 vulnerabilities in Android’s Framework and System components. “The most severe […]

Cybersecurity

Oracle Patches 185 Vulnerabilities With October 2023 CPU

Oracle on Tuesday announced the release of 387 new security patches as part of the October 2023 CPU, to resolve vulnerabilities affecting its own code and third-party components. More than 40 security patches address critical-severity flaws and more than 200 resolve bugs that can be exploited remotely without authentication, Oracle’s advisory reveals. SecurityWeek has identified […]