Forti VPN 500,000 Passwords leaked

Forti VPN 500,000 Passwords leaked

A hacker gang has allegedly collected and dumped 500,000 login credentials belonging to users of a popular VPN product from cybersecurity firm Fortinet. The threat actor, dubbed Orange, leaked the…
HAProxy Smuggling Attack Vulnerability

HAProxy Smuggling Attack Vulnerability

HAProxy, a widely used open-source load balancer and proxy server, that could be abused by an adversary to possibly smuggle HTTP requests, resulting in unauthorized access to sensitive data and…
Container Sandboxing in Prisma Cloud

Container Sandboxing in Prisma Cloud

Palo Alto's Prisma Cloud offering that’s used by enterprises to secure hybrid and multicloud environments. A new features unveiled today include an advanced container image sandboxing capability that will protect…
ActiveX Control RCE

ActiveX Control RCE

Microsoft said it has identified a limited number of attacks targeting a remote code execution vulnerability in MSHTML that affects Microsoft Windows tracked as CVE-2021-40444. An attacker could craft a…
ChainSaw Tool Insight

ChainSaw Tool Insight

Chainsaw tool is designed to assist in the first-response stage of a security engagement and can also help blue teams triage entries relevant for the investigation through Windows event log…
Jenkins hit with Confluence Vulnerability

Jenkins hit with Confluence Vulnerability

The Jenkins Project disclosed a security breach after threat actors compromised one of their internal servers and installed a cryptocurrency miner. Maintained by Jenkins community it's a powerful open source…
Trickbot Developer Handcuffed

Trickbot Developer Handcuffed

An alleged Russian developer for the notorious TrickBot malware gang was arrested in South Korea after attempting to leave the country. The TrickBot cybercrime group is responsible for a variety…