Mallox Ransomware Activity Surges

Mallox Ransomware Activity Surges

Mallox ransomware actors’ – aka TargetCompany, activity suddenly seen a steady surge by breaking into target networks via vulnerable SQL servers.   Active since June 2021, it has infected hundreds…
Apache OpenMeetings Vulnerabilities

Apache OpenMeetings Vulnerabilities

Researcher discovered three vulnerabilities in the open source Web application Apache OpenMeetings application can be used together into an attack chain that allows threat actors to take over a user…
CISA KEV Update July 2023 –  Part II

CISA KEV Update July 2023 – Part II

CISA has added two new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation. CVE-2023-29298 Adobe ColdFusion Improper Access Control Vulnerability CVE-2023-38205 Adobe ColdFusion Improper Access Control Vulnerability The…
CVE-2023-38408: OpenSSH RCE Vulnerability

CVE-2023-38408: OpenSSH RCE Vulnerability

Researchers from Qualys Security has discovered  a remote code execution vulnerability in OpenSSH’s forwarded ssh-agent tracked as CVE-2023-38408. OpenSSH is an open-source implementation of the SSH protocol, offers a robust…
CISA KEV Update July 2023 – Part I

CISA KEV Update July 2023 – Part I

CISA has added several new vulnerabilities to its Known Exploited Vulnerabilities Catalog, based on evidence of active exploitation during the month of July 2023. Here, the list of vulnerabilities is listed…