OpenSSH Vulnerabilities Expose Systems to Man-in-the-Middle and DoS Attacks

72/68 Friday, February 21, 2025 Researchers from the Qualys Threat Research Unit (TRU) have discovered two vulnerabilities in OpenSSH that could allow attackers to exploit systems through Man-in-the-Middle (MitM) and Denial-of-Service (DoS) attacks. The first vulnerability, CVE-2025-26465 (CVSS 6.8), affects the OpenSSH Client, enabling attackers to intercept SSH connections, leading to MitM attacks, which pose […]

ThaiCERT

February 21, 2025

Critical Vulnerability in Jupiter X Core Plugin on WordPress Poses Remote Attack Risk

71/68 Friday, February 21, 2025 Security researchers from Wordfence have disclosed a critical vulnerability (CVE-2025-0366) in the Jupiter X Core plugin, which is used on over 90,000 websites. The vulnerability was discovered on January 6, 2025, and has been assigned a severity score of 8.8 out of 10 based on the CVSS standard. This flaw […]

ThaiCERT

February 21, 2025

Juniper Networks Releases Patch for Session Smart Router Vulnerability

70/68 Thursday, February 20, 2025 Juniper Networks has released a patch to address a critical vulnerability, CVE-2025-21589, which has been assigned a CVSS severity score of 9.8. This vulnerability allows attackers to bypass authentication processes and gain control over affected devices. It impacts Session Smart Router, Session Smart Conductor, and WAN Assurance Managed Routers across […]

ThaiCERT

February 20, 2025

Alert! New Variant of Snake Keylogger Malware Spreading Across Asia and Europe

69/68 Thursday, February 20, 2025 Security researchers from Fortinet have issued a warning about the spread of a new variant of the Snake Keylogger malware, which is actively targeting Windows users in Asia and Europe. The latest version of this malware leverages AutoIt scripting language to install itself while enhancing its ability to evade antivirus […]

ThaiCERT

February 20, 2025

Vulnerability in Xerox VersaLink Printers Could Enable Lateral Movement Attacks

68/68 Wednesday, February 19, 2025 Security researchers at Rapid7 have discovered vulnerabilities in Xerox VersaLink multifunction printers, identified as CVE-2024-12510 and CVE-2024-12511. These flaws affect VersaLink C7020, C7025, and C7030 models and allow attackers to exploit a pass-back attack to steal authentication credentials used in LDAP and SMB/FTP protocols. The issue arises from the ability […]

ThaiCERT

February 19, 2025

South Korea Temporarily Suspends DeepSeek App Downloads Over Data Protection Concerns

67/68 Wednesday, February 19, 2025 South Korea’s Personal Information Protection Commission (PIPC) has announced a temporary suspension of downloads for the Chinese AI chatbot app DeepSeek starting February 15, 2025. The suspension will remain in place until the app provider ensures compliance with the country’s data protection regulations. However, the DeepSeek website remains accessible and […]

ThaiCERT

February 19, 2025

New Backdoor Malware Uses Telegram Bot API for Remote Control

66/68 Tuesday, February 18, 2025 Security researchers from Netskope Threat Labs have discovered a new backdoor malware written in Golang, which uses the Telegram Bot API as a communication channel between attackers and the malware. This allows attackers to easily send commands and receive data directly through Telegram chats. Researchers believe the malware may have […]

ThaiCERT

February 18, 2025

Russian-linked Group Storm-2372 Uses “Device Code Phishing” to Target Government Agencies and Organizations

65/68 Tuesday, February 18, 2025 Security researchers from Microsoft have warned that the cyber threat group known as Storm-2372, which has ties to Russia, has been using a “Device Code Phishing” technique to steal authentication tokens from government agencies, non-governmental organizations (NGOs), and various industries since August 2024. This technique deceives users into logging into […]

ThaiCERT

February 18, 2025

Hackers Exploit Vulnerability in Palo Alto Networks’ PAN-OS Firewall

64/68 Monday, February 17, 2025 Hackers are actively exploiting CVE-2025-0108, a vulnerability in Palo Alto Networks’ PAN-OS firewall, which allows attackers to bypass authentication and gain access to the web-based management system without requiring a password. While this vulnerability does not enable remote code execution directly, it poses a significant security risk to sensitive data. […]

ThaiCERT

February 17, 2025

RansomHub Rises as a Major Ransomware Threat in 2024

63/68 Monday, February 17, 2025 Group-IB has revealed that RansomHub has become the most influential ransomware group in 2024, following the takedown of major ransomware gangs such as ALPHV and LockBit by law enforcement operations. RansomHub operates under the Ransomware-as-a-Service (RaaS) model and selectively recruits affiliates from previously dismantled cybercriminal groups. This approach has enabled […]

ThaiCERT

February 17, 2025
1 2 16