zero-day exploits

Ivanti VPN Zero-Day Combo Chained ‘by China’
Richi Jennings | | CVE-2023-46805, CVE-2024-21887, Ivanti, ivanti acquisition, Ivanti Zero day vulnerability, SB Blogwatch, Zero Day Attacks, zero-day, zero-day attack, Zero-Day Bug, Zero-day Exploit, zero-day exploits, zero-day flaw, zero-day flaws, zero-day threat, Zero-day threats, zeroday, zerodayvulnerabilities
Under active exploitation since last year—but still no patch available ...
Security Boulevard
Navigating the Latest Android Security Updates: December 2023 Highlights
Rohan Timalsina | | android, android december security updates, android security updates, Android vulnerabilities, Cybersecurity, Google Zero-Day Vulnerability, Linux & Open Source News, open source, security patches, zero-day exploits
In the fast-paced world of mobile technology, ensuring the security of our devices is paramount. Google, the company behind the Android operating system, has recently released its December Android security updates, fixing ...
Sierra Flaws Cyber Attack: Router Vulnerabilities Unveiled
Wajahat Raja | | Aleos Application Framework, CISA Advisories, Critical Sectors, Cyber Attack Risk Assessment, Cybersecurity, Cybersecurity News, Forescout Vedere Labs, Internet of things, Network Security, open source components, OpenNDS, operational technology, patch management, perimeter devices, router vulnerabilities, security measures, Sierra Flaws Cyber Attack, Sierra Wireless, Supply Chain Risks, threat landscape, Timely Patching, TinyXML, zero-day exploits
In a recent scrutiny of Sierra wireless routers, Forescout’s Vedere Labs uncovered 21 novel vulnerabilities that, though relatively straightforward to exploit, pose historical challenges for enterprises to rectify. Forescout’s Vedere Labs outlined ...
Chrome Exploits Patched To Secure Your Browsing
Wajahat Raja | | Browser Exploits, Browser Security, Chrome Security, Chrome update, Chromium-Based Browsers, CVE-2023-6345, Cyber Threats, Cybersecurity, Cybersecurity News, Google Chrome, Internet Browsing, patch management, Security Vulnerabilities, Skia Library, threat landscape, Timely Updates, User Safety, zero-day exploits
In a bid to fortify the security of its Chrome browser, Google has swiftly addressed seven vulnerabilities, with one particularly menacing zero-day exploit. This critical flaw, identified as CVE-2023-6345, centers around an ...
Mirai Botnet Exploits Zero-Day Bugs For DDoS Attacks
Wajahat Raja | | Akamai SIRT, Cybersecurity News, cybersecurity threats, DDoS attacks, InfectedSlurs, IoT Security, Mirai botnet, Network Security, Remote Code Execution (RCE), Vulnerability Prevention, zero-day exploits
InfectedSlurs, a Mirai botnet malware, has been exploiting two zero-day remote code execution (RCE) vulnerabilities. The malware targets routers and video recorders (NVR) devices, aiming to make them a part of its ...
Zimbra Zero-Day Exploit Unveiled
Wajahat Raja | | Campaign Timelines, Cross-Site Scripting (XSS), CVE-2023-37580, Cyber Threats, Cybersecurity Measures, Cybersecurity News, email security, Email Software Security, Exploitation Dynamics, Google TAG, Government Targeting, Phishing, Timely Fixes, Winter Vivern, XSS Vulnerabilities, Zero-day Exploit, zero-day exploits, Zimbra, Zimbra Authentication Tokens, Zimbra Collaboration
Cyber threats in business email systems have become extremely common in this digital world. Recently, a critical zero-day vulnerability in the widely used Zimbra Collaboration email software has been exploited by multiple ...
Winter Vivern’s Roundcube Zero-Day Exploits
Wajahat Raja | | Cybersecurity, Cybersecurity News, European Governments, Roundcube, threat actor, Vulnerability (CVE-2023-5631), Winter Vivern, zero-day exploits
In a recent cybersecurity development, an elusive threat actor named Winter Vivern aimed its sights at the popular Roundcube webmail software, successfully exploiting a zero-day vulnerability on October 11th. This breach allowed ...
Cisco IOS XE Security Alert: Zero-Days Vulnerability Patched
Rohan Timalsina | | cisco, Cisco Security Updates, CVE, Cybersecurity Weaknesses, enterprise security, Linux & Open Source News, security patches, security vulnerabilites, zero-day exploits, zero-day vulnerabilities
Cisco has patched two vulnerabilities, tracked as CVE-2023-20198 and CVE-2023-20273 that hackers are actively exploiting to compromise thousands of devices. The patch has been made available after the attackers exploited these issues ...
Microsoft Patch Releases: Safeguarding Against Flaws
Wajahat Raja | | Active Directory, Brute-Force Mitigation, CVE-2023-36563, CVE-2023-41763, Cybersecurity Best Practices, Cybersecurity News, Hybrid Environments, Microsoft patch tuesday, Network Security, patch management, security updates, VBScript, Vulnerability Management, Windows security, zero-day exploits, zero-day vulnerabilities
Microsoft published its monthly Patch Tuesday updates in October 2023, resolving a total of 103 vulnerabilities across its platforms. In the wild, two of these issues were actively exploited. In this blog, ...

Cisco Zero-Day: As Bad as it Gets — and No Fix 4 Weeks in
Richi Jennings | | 0-day, 0-day exploits, 0-day vulnerability, 0day, cisco, Cisco IOS XE, CVE-2023-20198, SB Blogwatch, Zero Day Attacks, zero-day, Zero-Day Bug, Zero-day Exploit, zero-day exploits, zero-day flaw, zero-day flaws, zero-day threat, zero-day vulnerabilities, Zero-day Vulnerability, zero-days, zeroday, zerodayvulnerabilities
Keeping us in suspense—It doesn’t get worse than this: CVE-2023-20198 is CVSS=10 ...
Security Boulevard