SIEM as a Service
New Citrix ADC Zero-Day Scanner Tool Released With IOCs

New Citrix ADC Zero-Day Scanner Tool Released With IOCs

Citrix was previously discovered with a Zero-Day vulnerability on their Citrix NetScaler Application Delivery Controller (ADC) that allowed threat actors to perform remote code execution. The Zero-Day was found to be exploited in the...
Hackers Actively Exploiting zero-day Flaw in Ivanti Mobile Endpoint Manager Software

Hackers Actively Exploiting Zero-day Flaw in Ivanti Mobile Endpoint Manager Software

Ivanti ‘s mobile device management software EPMM(Endpoint manager mobile), aka Mobile iron core version lower than 11.8.1.0, was impacted by the actively exploited zero-day vulnerability.  On Sunday, the company released the security patches for the...
Hackers Actively Exploiting Zero-day Vulnerability in Zimbra Server

Hackers are Actively Exploiting Zero-day Flaw in Zimbra Server

Zimbra is a widely used email client used by many organizations worldwide. The Zimbra Collaboration Suite provides a much more comprehensive package of document storage, Editing, instant messaging, mini calendar, and other ease of...
Microsoft July Security Update

6 Actively Exploited Zero-Days and 132 Flaws Patched – Microsoft Security Update

A total of 132 new security flaws in Microsoft's products were patched, including six zero-day issues that the company claimed were being actively used in the wild. Nine of the 130 vulnerabilities have a severity rating...
Counter-Strike Zero-Day Flaw

Multiple Counter-Strike Zero-Day Flaw Let Hackers Control Client Machine

Neodyme researchers discovered three distinct RCE vulnerabilities in Counter-Strike: Global Offensive, where each vulnerability is exploited through a malicious Python server upon game client connection. Despite fixing several critical vulnerabilities with a patch dated 04/28/2021,...
Ghosttoken - Zero-Day

Ghosttoken – Zero-Day Flaw Lets Attackers Gain Access to Google Accounts

Astrix's Security Research Group reported a 0-day flow in the Google Cloud Platform (GCP) related to an OAuth flow exploitation. This method was termed "Ghosttoken."  Exploiting this flaw is done through a malicious application, which...
Second Google Chrome Zero-Day Bug Actively Exploited in Wild – Emergency Update!

Second Google Chrome Zero-Day Bug Actively Exploited in Wild – Update Now!

Recently, Google released an emergency security update to fix another Chrome zero-day vulnerability actively exploited in the wild. This zero-day flaw has been tracked as CVE-2023-2136 and is the second zero-day vulnerability found this...
Chrome Zero-Bay Bug

New Google Chrome Zero-Day Bug Actively Exploited in Wide – Emergency Update!

Google released new security updates for actively exploited Chrome zero-day vulnerability that allows attackers to execute an arbitrary code to take complete control of the system remotely using the exploit in the Wild. Google fixed...
Hackers Windows Zero-day

Hackers Exploited Windows Zero-day For Ransomware Attacks

Microsoft recently fixed a zero-day vulnerability that threat actors exploited to gain unauthorized privileges in the Windows Common Log File System (CLFS). The cybersecurity analysts at SecureList from Kaspersky affirmed that the threat actors reportedly...
Pwn2Own Day One

Windows 11, Tesla, macOS & Ubuntu Desktop Hacked – Pwn2Own Day One

On the first day, Pwn2Own Vancouver 2023 hacking challenge participants compromised Windows 11, Tesla, macOS, and Ubuntu Desktop. AbdulAziz Hariri of Haboob SA, who completed his attack against Adobe Reader utilizing a 6-bug logic chain...
SIEM as a Service

Recent Posts

Production Line Cameras Vulnerabilities Let Attackers Stop The Recordings

Critical security vulnerabilities have been identified in industrial camera systems widely deployed across Japanese manufacturing facilities, allowing malicious actors to remotely access live footage...