Friday, August 28, 2026
Follow on LinkedIn

Technical

Zabbix Server Vulnerability Lets Attacker Execute Arbitrary Code Via Ping Script

A critical security vulnerability, identified as CVE-2024-22116, has been patched in Zabbix, a popular monitoring solution. The vulnerability allowed an administrator with restricted permissions to execute arbitrary code via the Ping script in the Monitoring Hosts section, potentially compromising...

New OpenSSH Vulnerability CVE-2024-6409 Exposes Systems to RCE Attack

Security researchers have discovered a new vulnerability in OpenSSH, identified as CVE-2024-6409, which could potentially allow remote code execution attacks on affected systems. This vulnerability, which affects OpenSSH versions 8.7 and 8.8, allows for potential remote code execution (RCE) due to a race condition...

Google Chrome Patches Six High-Severity Vulnerabilities

Google has released a critical security update for its Chrome browser, addressing six high-severity vulnerabilities that could potentially lead to browser crashes and other serious security issues. The update, version 126.0.6478.114/115 for Windows and Mac and 126.0.6478.114 for Linux...

Critical Vulnerability in Trellix IPS Manager Flaw Allows Remote Code Execution

Trellix has patched a critical security vulnerability in its Intrusion Prevention System (IPS) Manager, tracked as CVE-2024-5671. This flaw, caused by insecure deserialization in certain workflows, could allow unauthenticated remote attackers to execute arbitrary code, posing a severe risk...

Forminator WordPress Plugin Flaw Exposes Over 50,000 Websites to Cyber Attacks

In a recent cybersecurity revelation, over 50,000 websites using the popular WordPress plugin Forminator are at risk due to multiple critical vulnerabilities. If exploited, these flaws could allow attackers to perform a range of malicious activities, from stealing sensitive...

Chrome Zero-Day Vulnerability Exploited At Pwn2Own : Patch Now

Google fixed three vulnerabilities in the Chrome browser on Tuesday, along with another zero-day exploit that was exploited during the Pwn2Own Vancouver 2024 hacking contest. Google recently fixed two more zero-day vulnerabilities that were exploited during the Pwn2Own hacking competition. Palo Alto Networks'...

Top 10 Vulnerabilities That Were Exploited the Most In 2023

Several vulnerabilities have been identified and exploited by threat actors in the wild this year for several malicious purposes, such as Ransomware, cyber espionage, data theft, cyberterrorism, and many nation-state-sponsored activities. Some vulnerabilities were added to the CISA’s Known Exploited...

New Terrapin Attack Downgrades SSH Protocol Connection Security

SSH protocol is one of the most used protocols across several organizations to establish a remote terminal login and file transfer. SSH consists of an authenticated key exchange for establishing the secure channel connection to ensure integrity and confidentiality.  However,...

Notepad++ Input Validation Flaws Leads to uncontrolled Search Path Vulnerability

Notepad++ has been discovered with an uncontrolled search path vulnerability, which could allow threat actors to search an untrusted search path. This vulnerability has been disclosed to Notepad++, and a patch has yet to be provided. Notepad++ is a simple...

Beware of Fake Google Chrome Update that Installs Malware 

Cybersecurity is constantly changing and facing new challenges.  One of them is the fake Chrome update malware, which has been around for several years and is still active.  This malware pretends to be a genuine Chrome browser update, but it...

Latest News

Latest News