Plex suffers a Data Breach

Plex suffers a Data Breach

Plex streaming services has  sent out an email to all its users advising them to change their passwords as soon as possible after discovering suspicious activity on one of its…
VMware Privilege escalation Bug

VMware Privilege escalation Bug

A vulnerability in VMware Tools could pave the way for local privilege escalation (LPE) and lead to takeover of virtual machines. Tracked as CVE-2022-31676, carries a rating of 7.0 out…
MagicWeb From Nobelium APT

MagicWeb From Nobelium APT

Researchers at Microsoft observed the activity of Russia-backed Nobelium APT that uses the backdoor after gaining administrative privileges to an Active Directory Federated Services server. With that elevated privileged access,…
GitLab fixes Critical RCE

GitLab fixes Critical RCE

GitLab has fixed a RCE vulnerability tracked as CVE-2022-2884 affecting the Community and the Enterprise Edition of its DevOps platform, and has urged admins to upgrade their GitLab instances immediately…
WhistleBlown on Twitter Security Standpoint

WhistleBlown on Twitter Security Standpoint

Twitter's former head of security has blown the whistle on weaknesses in security, including vulnerabilities that could lay the social media platform open to cyberattacks that could have major national-security…
Escanor Remote Access Trojan in action

Escanor Remote Access Trojan in action

A new RAT has been seen on the dark web weaponizing Microsoft Office and Adobe PDF documents to deliver malicious code, dubbed Escanor. The threat actors offer Android-based and PC-based…