Google on Thursday released an emergency update for Chrome 107 to patch an actively exploited zero-day vulnerability.
Industrial Ransomware Attacks: New Groups Emerge, Manufacturing Pays Highest Ransom
Industrial organizations continue to be a top target for ransomware attacks, and reports published by cybersecurity companies this week reveal some recent trends.
Cisco Confirms In-the-Wild Exploitation of Two VPN Vulnerabilities
Cisco has confirmed that two vulnerabilities affecting one of its VPN products are being exploited in the wild.
CISA Warns of Attacks Exploiting Cisco, Gigabyte Vulnerabilities
The US Cybersecurity and Infrastructure Security Agency (CISA) has added two Cisco and four Gigabyte product flaws to its Known Exploited Vulnerabilities catalog. Only one of the Gigabyte vulnerabilities was previously mentioned as being involved in attacks.
FBI Warns of Iranian Cyber Firm’s Hack-and-Leak Operations
The Federal Bureau of Investigation on Thursday issued an alert to warn that Iranian cyber group Emennet Pasargad is targeting organizations to steal their data and leak it online.
Text4Shell Vulnerability Exploitation Attempts Started Soon After Disclosure
Exploitation attempts targeting the Apache Commons Text vulnerability tracked as CVE-2022-42889 and Text4Shell started shortly after its disclosure, according to WordPress security company Defiant.
CISA Tells Organizations to Patch Linux Kernel Vulnerability Exploited by Malware
The US Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a Linux kernel flaw to its Known Exploited Vulnerabilities Catalog and instructed federal agencies to address it within three weeks.
China’s Winnti Group Seen Targeting Governments in Sri Lanka, Hong Kong
The Chinese state-sponsored threat group Winnti has been observed targeting governmental entities in Sri Lanka and Hong Kong in recent campaigns.
Critical Apache Commons Text Flaw Compared to Log4Shell, But Not as Widespread
A critical security hole affecting Apache Commons Text has been compared to the notorious Log4Shell vulnerability, but experts say it’s not as widespread.
New ‘Prestige’ Ransomware Targets Transportation Industry in Ukraine, Poland
A new ransomware family has been observed targeting transportation and related logistics organizations in Ukraine and Poland, Microsoft warns.












