The FTC Accuses GoDaddy of Cybersecurity Failures Spanning Several Years

23/68 Friday, January 17, 2025 The U.S. Federal Trade Commission (FTC), an independent agency dedicated to protecting consumers, has released a report stating that GoDaddy, a major hosting provider managing over 82 million domain names, has failed to implement basic security measures for its platform since 2018. This negligence has left customers and website visitors […]

ThaiCERT

January 17, 2025

WP3.XYZ Malware Targets Over 5,000 WordPress Websites, Creates Fake Admin Accounts

22/68 Thursday, January 16, 2025 A new malware campaign has compromised more than 5,000 WordPress websites, creating fake admin accounts, installing malicious plugins, and stealing sensitive information. Researchers from the cybersecurity firm c/side discovered that the malware uses the domain wp3[.]xyz to exfiltrate data to the attackers’ server. After successfully breaching a system, the malicious […]

ThaiCERT

January 16, 2025

Biden Signs Executive Order to Support AI Infrastructure Development in the U.S.

21/68 Thursday, January 16, 2025 President Joe Biden has signed a landmark executive order aimed at supporting the development of artificial intelligence (AI) infrastructure. The order emphasizes the establishment of advanced AI data centers powered by renewable energy sources, such as wind and solar, to meet the growing demands of industries widely adopting AI. Federal […]

ThaiCERT

January 16, 2025

CISA Adds BeyondTrust and Qlik Sense Vulnerabilities to Known Exploited Vulnerabilities (KEV) Catalog

20/68 Wednesday, January 15, 2025 The Cybersecurity and Infrastructure Security Agency (CISA) has added new vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. One of the vulnerabilities is CVE-2024-12686, an OS Command Injection vulnerability with a CVSS severity score of 6.6, found in BeyondTrust Privileged Remote Access (PRA) and Remote Support (RS). This vulnerability allows […]

ThaiCERT

January 15, 2025

Hackers Hide Data-Stealing Malware in YouTube Comment Sections

19/68 Wednesday, January 15, 2025 Researchers from Trend Micro have disclosed that cyber attackers are targeting individuals searching for pirated software or cracked programs by using trusted platforms like YouTube and Google as tools for deception. The attackers create tutorial videos guiding users on how to install software, embedding download links in the video comment […]

ThaiCERT

January 15, 2025

Pro-Russia Hacker Group Launches Another Attack on Italy After Zelensky’s Visit

18/68 Tuesday, January 14, 2025 The pro-Russia hacker group NoName057(16) launched Distributed Denial-of-Service (DDoS) attacks on Italian government agencies, critical infrastructure, and private organizations last week. The attacks followed Ukrainian President Volodymyr Zelensky’s visit to Rome, during which Italian Prime Minister Giorgia Meloni pledged full support for Ukraine in both defense and peace efforts. The […]

ThaiCERT

January 14, 2025

Warning: Scam Messages Targeting Apple iMessage Users to Disable Anti-Phishing Protection

17/68 Tuesday, January 14, 2025 Cybercriminals are employing a new deception technique to bypass Apple iMessage’s anti-phishing system, which automatically disables links in messages from unknown senders, whether from email addresses or phone numbers. By tricking users into replying to the message or adding the sender to their contact list, the links become active, placing […]

ThaiCERT

January 14, 2025

Telefónica Confirms Internal Ticketing System Breach Following Data Leak

16/68 Monday, January 13, 2025 Telefónica, a Spanish telecommunications giant, has confirmed that its internal ticketing system was hacked after stolen data was published on a hacking forum. The company revealed that it has blocked access to the system and is conducting a thorough investigation into the incident. Telefónica, one of Spain’s largest multinational telecommunications […]

ThaiCERT

January 14, 2025

Beware of a Phishing Campaign Impersonating PayPal to Deceive Users into Granting Account Access

15/68 Monday, January 13, 2025 Fortinet, a leading cybersecurity company, has issued a warning about a new phishing campaign that deceives PayPal users by using highly convincing links that appear legitimate to gain unauthorized access to user accounts. The phishing emails are meticulously crafted to mimic genuine PayPal notifications, including details such as payment information, […]

ThaiCERT

January 14, 2025

SonicWall Warns of Vulnerability in SonicOS That Can Be Exploited

14/68 Friday, January 10, 2025 SonicWall has urged its customers to promptly upgrade the SonicOS firmware of their firewalls to mitigate an authentication bypass vulnerability identified as CVE-2024-53704, with a CVSS score of 8.2. This vulnerability affects the SSL VPN and SSH management features, posing a significant risk to users who have enabled these features. […]

ThaiCERT

January 10, 2025
1 2 3 4 15