Nessus Scanner Agents Offline Due to Plugin Update Failure

10/68 Wednesday, January 8, 2025 Tenable, the developer of the “Nessus” vulnerability scanning tool, has announced the deactivation of Nessus Scanner Agent versions 10.8.0 and 10.8.1 after discovering that “differential” plugin updates caused the agents to go offline on some systems. As a precaution, the company has temporarily halted plugin updates while investigating and addressing […]

ThaiCERT

January 8, 2025

Newly Developed EagerBee Malware Detected, Targeting ISPs and Government Agencies in the Middle East

09/68 Wednesday, January 8, 2025 Kaspersky security researchers have disclosed details about EagerBee, a backdoor malware developed to enhance its stealth capabilities and post-infection operations. This malware has been used to attack key organizations in Middle Eastern countries, with attackers targeting Internet Service Providers (ISPs) and government agencies. EagerBee demonstrates advanced technological capabilities by operating […]

ThaiCERT

January 8, 2025

Nuclei Vulnerability Discovered, Posing Risk of Signature Bypass and Malicious Code Execution

08/68 Tuesday, January 7, 2025 A high-severity vulnerability has been discovered in Nuclei, an open-source vulnerability scanning tool, identified as CVE-2024-43405 with a CVSS score of 7.4. This vulnerability allows attackers to bypass signature verification and inject malicious code into templates. According to Wiz’s security team, the issue arises from differences in newline character handling […]

ThaiCERT

January 7, 2025

Windows 10 users should prepare to upgrade before security support ends in 2025.

07/68 Tuesday, January 7, 2025 Cybersecurity company ESET has advised Windows 10 users to upgrade to Windows 11 immediately or switch to another operating system before security support ends on October 14, 2025, to avoid serious cybersecurity risks. Thorsten Urbanski, an expert from ESET, stated, “We recommend that all users transition to Windows 11 as […]

ThaiCERT

January 7, 2025

FireScam Malware on Android Masquerades as Telegram Premium App to Steal User Data

06/68 Monday, January 6, 2025 The Android malware FireScam has been discovered masquerading as a Telegram Premium app and spreading through a phishing website hosted on GitHub that mimics the appearance of RuStore, a Russian app marketplace. RuStore was launched in 2022 as an alternative to Google Play and the App Store following tech sanctions […]

ThaiCERT

January 6, 2025

US Sanctions Chinese Company “Integrity Tech” Over Ties to Hacker Group “Flax Typhoon”

05/68 Monday, January 6, 2025 The US Department of the Treasury has imposed sanctions on Integrity Tech, a Beijing-based cybersecurity company, after identifying its involvement in cyberattacks linked to the hacker group Flax Typhoon, which is allegedly backed by the Chinese government. The Office of Foreign Assets Control (OFAC) stated that Integrity Tech was used […]

ThaiCERT

January 6, 2025

Lumen Blocks Salt Typhoon Hacker Group from Its Network After Detecting Global and U.S. Targets

04/68 Friday, January 3, 2025 Lumen has reported that it successfully blocked the Salt Typhoon hacker group, linked to China, from accessing its network, confirming that no customer data was accessed or leaked. Salt Typhoon, also known as FamousSparrow and GhostEmperor, has been active since 2019, targeting government agencies and global telecommunications companies. Most recently, […]

ThaiCERT

January 3, 2025

6 AI Security Trends to Watch in 2025

03/68 Friday, January 3, 2025 The role of AI is becoming a critical focus for organizations worldwide in 2025. Analysts believe that the use of Generative Artificial Intelligence (GenAI) and Large Language Models (LLMs) will significantly enhance productivity and efficiency. However, these advancements also introduce new challenges in terms of security, privacy, and governance. The […]

ThaiCERT

January 3, 2025

Iran and Russia sanctioned for interfering in U.S. elections using AI and cyber tactics.

02/68 Thursday, January 2, 2025 The U.S. Department of the Treasury, under the Office of Foreign Assets Control (OFAC), has sanctioned organizations in Iran and Russia for attempting to interfere in the 2024 U.S. presidential election. The Iranian organization, the Cognitive Design and Planning Center (CDPC), operates under the Islamic Revolutionary Guard Corps (IRGC) and […]

ThaiCERT

January 2, 2025

The United States issues new regulations to tighten control over the transfer of personal data, aiming to prevent threats to national security from foreign entities.

01/68 Thursday, January 2, 2025 The U.S. Department of Justice (DoJ) has announced the final rule for implementing Executive Order (EO) 14117, aimed at regulating the mass transfer of personal data to countries considered potential threats, such as China, Cuba, Iran, North Korea, Russia, and Venezuela. This new rule stems from President Joe Biden’s executive […]

ThaiCERT

January 2, 2025
1 2 3 10