CISA Adds Microsoft Partner Center and Synacor Zimbra Collaboration Suite Vulnerabilities to Known Exploited Vulnerabilities (KEV)

82/68 Friday, February 28, 2025 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two vulnerabilities—CVE-2023-34192 in Synacor Zimbra Collaboration Suite (ZCS) and CVE-2024-49035 in Microsoft Partner Center—to its Known Exploited Vulnerabilities (KEV) catalog. Details of these vulnerabilities are as follows: To mitigate risks associated with these vulnerabilities, agencies under the Federal Civilian Executive […]

ThaiCERT

February 28, 2025

New Linux Malware ‘Auto-Color’ Grants Hackers Full Remote Access to Compromised Systems

81/68 Friday, February 28, 2025 Researchers from Palo Alto Networks Unit 42 have discovered a previously undocumented Linux malware named Auto-Color, which has been targeting universities and government organizations in North America and Asia between November and December 2024. This malware allows attackers to gain full remote access to infected systems, making its removal extremely […]

ThaiCERT

February 28, 2025

CISA Adds Adobe ColdFusion and Oracle Agile PLM Vulnerabilities to Known Exploited Vulnerabilities (KEV) Catalog

80/68 Thursday, February 27, 2025 The Cybersecurity and Infrastructure Security Agency (CISA) has added two vulnerabilities—CVE-2017-3066 in Adobe ColdFusion and CVE-2024-20953 in Oracle Agile Product Lifecycle Management (PLM)—to its Known Exploited Vulnerabilities (KEV) catalog. The details of these vulnerabilities are as follows: To mitigate the risks associated with these vulnerabilities, Federal Civilian Executive Branch (FCEB) […]

ThaiCERT

February 27, 2025

Have I Been Pwned Adds 284 Million Stolen Accounts from Info-Stealing Malware

79/68 Thursday, February 27, 2025 Have I Been Pwned (HIBP), a data breach notification service, has added over 284 million stolen accounts to its database after discovering the data being shared on a Telegram channel named “ALIEN TXTBASE”—a repository for credentials stolen by info-stealing malware. Troy Hunt, the founder of HIBP, revealed that the dataset […]

ThaiCERT

February 27, 2025

Android Malware “SpyLend” Found on Google Play, Involved in Fraud and Extortion

78/68 Wednesday, February 26, 2025 Researchers from CYFIRMA have discovered a malicious app called “Finance Simplified” on Google Play, which is infected with the SpyLend malware. This malware targets users in India, masquerading as a financial calculator while actually functioning as an illegal loan app. It exploits users’ personal data for blackmail and extortion. Within […]

ThaiCERT

February 26, 2025

Alert! Hackers Use Over 130,000 Botnet Devices in Password-Spraying Attack to Breach Microsoft 365 Accounts

77/68 Wednesday, February 26, 2025 Security researchers from SecurityScorecard have discovered that over 130,000 compromised devices are being used in a large-scale password-spraying attack targeting Microsoft 365 accounts. The attackers leverage a technique called “Non-Interactive Sign-Ins”, which bypasses multi-factor authentication (MFA), making it easier to evade security defenses. Additionally, they utilize stolen credentials obtained from […]

ThaiCERT

February 26, 2025

Google Introduces Digital Signatures to Defend Against Quantum Computer Attacks in Cloud KMS

75/68 Tuesday, February 25, 2025 Google Cloud has announced the launch of digital signatures designed to protect against quantum computer attacks within its Cloud Key Management Service (Cloud KMS), now available for trial. This initiative is part of Google’s effort to prepare for future threats, as quantum computers may potentially break traditional encryption methods. The […]

ThaiCERT

February 25, 2025

Lazarus APT Hacker Group Steals $1.5 Billion from Bybit, Becoming the Largest Crypto Heist in History

74/68 Monday, February 24, 2025 The crypto exchange platform Bybit experienced the largest hack in history, with hackers stealing over $1.5 billion worth of cryptocurrency from the company’s cold wallets. The hackers used a technique to spoof the signing interface, redirecting transactions to untraceable addresses. This incident surpasses previous major hacks such as Ronin Network […]

ThaiCERT

February 24, 2025

Ghost Ransomware Attacks Victims in 70 Countries, Urging Organizations Worldwide to Update Their Systems

73/68 Monday, February 24, 2025 The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about Ghost Ransomware, a ransomware group linked to China that is rapidly spreading across more than 70 countries worldwide. This group is notable for its ability to escalate from initial network access to a full-scale attack within just […]

ThaiCERT

February 24, 2025

OpenSSH Vulnerabilities Expose Systems to Man-in-the-Middle and DoS Attacks

72/68 Friday, February 21, 2025 Researchers from the Qualys Threat Research Unit (TRU) have discovered two vulnerabilities in OpenSSH that could allow attackers to exploit systems through Man-in-the-Middle (MitM) and Denial-of-Service (DoS) attacks. The first vulnerability, CVE-2025-26465 (CVSS 6.8), affects the OpenSSH Client, enabling attackers to intercept SSH connections, leading to MitM attacks, which pose […]

ThaiCERT

February 21, 2025
1 5 6 7 21