SIEM as a Service
Chrome Patched Zero-day Flaw That Exploits in the Wild: Update Now!

Chrome Security Update: Patches Widely Exploited Zero-Day Flaw

Google has upgraded the Stable and Extended stable channels to 116.0.5845.187 for Mac and Linux and 116.0.5845.187/.188 for Windows as part of a security update for Chrome.  This release comes with one "Critical" security patch. The...
Samsung 0-Click RCE Vulnerability

0-Click RCE Vulnerability in Samsung Smartphones Let Attackers Trigger OOB Write – Technical Analysis

Google Security researchers have disclosed a critical vulnerability, tagged as CVE-2024-49415, affecting Samsung smartphones last year and reported to Samsung with a 90-day deadline to patch. This zero-click remote code execution (RCE) flaw originates...
Counter-Strike Zero-Day Flaw

Multiple Counter-Strike Zero-Day Flaw Let Hackers Control Client Machine

Neodyme researchers discovered three distinct RCE vulnerabilities in Counter-Strike: Global Offensive, where each vulnerability is exploited through a malicious Python server upon game client connection. Despite fixing several critical vulnerabilities with a patch dated 04/28/2021,...
Exploitation Zero-Day Vulnerabilities Remote Access Became Prime Target

Exploitation Zero-Day Vulnerabilities For Remote Access Became Prime Target

The cybersecurity landscape in 2024 has been marked by a significant surge in malware and vulnerabilities.  The Key trends include the expansion of Ransomware-as-a-Service (RaaS), an increase in software supply chain attacks, and the exploitation...
New Google Chrome Zero-Day Bug Actively Exploited in Wild – Emergency Update!

New Google Chrome Zero-Day Bug Actively Exploited in Wild – Emergency Update!

Google released new security updates for actively exploited Chrome zero-day vulnerability that allows attackers to execute an arbitrary code to take full control of the system remotely using the exploit that exists in the...
Paragon Spyware Exploited WhatsApp Zero-day

Paragon Spyware Exploited WhatsApp Zero-day Vulnerability to Attack High-value Targets

Researchers have uncovered extensive evidence linking Israeli firm Paragon Solutions to a sophisticated spyware operation that exploited a zero-day vulnerability in WhatsApp to target journalists and civil society members. Following the investigation, WhatsApp notified approximately...
Telegram Zero-Day Vulnerability Exploited Using Malicious Video Files

Telegram Zero-Day Vulnerability Exploited Using Malicious Video Files

ESET researchers recently discovered a critical zero-day vulnerability in the Telegram messaging app for Android, potentially exposing millions of users to malicious attacks. The exploit, dubbed "EvilVideo," allowed attackers to disguise harmful Android payloads as...
iTunes 0-day Privilege Escalation Flaw Let Attackers Hack Windows

iTunes 0-day Privilege Escalation Flaw Let Attackers Hack Windows

iTunes is a media player which is developed by Apple Inc. and this application enables users to purchase, organize, and play digital music and videos.  It was launched in 2001 and revolutionized the way people...
Windows SmartScreen zero-day

Windows SmartScreen & DirectX Graphics Zero-day Flaw Let Attacker Gain Admin Privilege

Microsoft releases a few patches in December normally, and this year is no exception. Microsoft Patch for December 2022, a total of 52 vulnerabilities in Microsoft Windows and Windows Components, Azure, Office and Office Components,...
Exim SMTP Service Zero-day Flaw Let Attackers Execute Remote Code

Exim SMTP Service Zero-day Flaw Let Attackers Execute Remote Code

Six new zero-day vulnerabilities in Exim Message Transfer Agent have been reported as part of the Zero-Day initiative. These vulnerabilities were discovered in June 2022 but were not disclosed until now as Exim did...
SIEM as a Service

Recent Posts