Hackers Exploiting ProjectSend Authentication Vulnerability In The Wild

“`html Recent reports indicate that hackers are actively exploiting a critical authentication vulnerability in ProjectSend, a widely-used open-source file-sharing web application. This vulnerability poses a significant threat to installations that…

Chinese APT Hackers Using Multiple Tools And Vulnerabilities To Attack Telecom Orgs

“`html Since the beginning of 2023, the APT (Advanced Persistent Threat) group known as Earth Estries, also referred to by various aliases including Salt Typhoon, FamousSparrow, GhostEmperor, and UNC2286, has…

Critical Flaw in ProjectSend Under Active Exploitation Against Public-Facing Servers

“`html In a critical security alert, a vulnerability designated as CVE-2024-11680 has been identified in ProjectSend, an open-source file sharing platform mainly used by developers and teams for managing files.…

Critical vulnerabilities in Advantech industrial wireless access points expose critical infrastructure to cyber threats

“`html Critical Vulnerabilities in Advantech Industrial Wireless Access Points: Implications for Developers Recent findings from Nozomi reveal significant vulnerabilities in Advantech’s industrial wireless access points (WAPs), which critically impact the…

Microsoft Patches Exploited Vulnerability in Partner Network Website

“`html Microsoft has rolled out critical patches addressing vulnerabilities that have affected its Partner Network website, among other cloud and AI services. This action is particularly significant as one of…