Spotify Backstage RCE Vulnerability

Spotify Backstage RCE Vulnerability

A security flaw in Spotify’s open-source, Cloud Native Computing Foundation (CNCF)-incubated project Backstage has been discovered that could lead to threat actors performing RCE. The findings come after a team…
Billbug APT ! Chinese State Sponsered

Billbug APT ! Chinese State Sponsered

Billbug, a chinese state sponsored-hacking group has breached government and defence agencies throughout Asia, as part of a major campaign since March. The gang infiltrated a digital certificate authority, which…
GitHub New Vulnerability Reporting Scheme

GitHub New Vulnerability Reporting Scheme

GitHub has introduced a new direct channel for security researchers to report vulnerabilities in public repositories. This needs to be manually enabled by repository maintainers and, once active, enables security…
Ukraine CERT Warns on Somnia ransomware

Ukraine CERT Warns on Somnia ransomware

Cyber experts from Ukraine discovered a new attack campaign by suspected Russian threat actors that compromise victims’ VPN accounts to access and encrypt networked resources. The Somnia ransomware was being…