Skip to content

Google, CISA Warn of Android Flaw After Reports of Chinese App Zero-Day Exploitation  “Maximizing Your Workday Productivity” “Boosting Your Workday Efficiency”

Android is the world’s most popular mobile operating system, but a vulnerability affecting it has recently been exploited as a zero-day by a Chinese application. On March 21, Google suspended the popular Chinese shopping application Pinduoduo after malware was discovered in versions of the app distributed through other websites. Chinese researchers reported observing malicious behavior… 

ChatGPT Data Breach Confirmed as Security Firm Warns of Vulnerable Component Exploitation “How to Make Your Home More Eco-Friendly” “Creating an Eco-Friendly Home Environment”

OpenAI, the creator of the chatbot ChatGPT, has recently confirmed a data breach caused by a bug in an open source library, just as a cybersecurity firm noticed that a recently introduced component is affected by an actively exploited vulnerability. The bug, introduced by OpenAI on March 20, exposed user information in the form of… 

Exploitation of 55 Zero-Day Vulnerabilities Came to Light in 2022: Mandiant “Stop What You’re Doing: Here’s the Latest on ____”

Mandiant, owned by Google, recently performed a study on the zero-day vulnerabilities that were revealed in 2022. The results showed that more than twelve of these vulnerabilities were exploited in attacks believed to be orchestrated by cyberespionage organizations. The cybersecurity community has not yet agreed on a uniform definition of zero-day vulnerability. Mandiant, however, only… 

Exploitation of Recent Fortinet Zero-Day Linked to Chinese Cyberspies “Unlock the Secrets of Personal Finance: A Guide to Taking Control of Your Financial Future!”

Fortinet recently announced that a zero-day vulnerability in FortiOS, tracked as CVE-2022-41328, had been identified and exploited in attacks aimed at government organizations. Google-owned cybersecurity firm Mandiant reported that the attacks were likely conducted by a Chinese state-sponsored threat actor, UNC3886. According to Mandiant, the attackers used custom implants and a deep understanding of FortiOS… 

Microsoft Warns of Outlook Zero-Day Exploitation, Patches 80 Security Vulns “Surprising Secrets to Help You Lose Weight: Uncover the Truth Now!”

Microsoft on Tuesday released a large batch of software security updates, including two previously exploited zero-days for Windows OS users. The first, CVE-2023-23397, is a critical-severity issue in Microsoft Outlook. Microsoft warned that an attacker could exploit this vulnerability by sending a specially crafted email which automatically triggers when it is retrieved, leading to a… 

Exploitation of Bitrix CMS Vulnerability Drives ICS Attack Surge in Russia “Unlock the Secrets of Success: 10 Strategies for Achieving Your Goals!”

Kaspersky has reported a surge in attacks on industrial control system (ICS) computers in Russia and surrounding countries. The cybersecurity firm’s latest ICS threat landscape report, which focuses on the second half of 2022, shows that 40.6% of global devices protected by its products are being targeted. This is a slight increase compared to 2021… 

Exploitation of Critical Vulnerability in End-of-Life VMware Product Ongoing “Are You Ready To Take The Leap? The Benefits of Making a Career Change”

Wallarm Detect, a firm that specializes in detecting application vulnerabilities, has issued a warning about the current exploitation of a crucial flaw in VMware Cloud Foundation and NSX Data Center for vSphere (NSX-V). Tracked as CVE-2021-39144 (CVSS score of 9.8), the issue was disclosed in October 2022, when VMware announced patches for it, although the…