Dissecting TriangleDB, a Triangulation spyware implant

![](https://media.kasperskycontenthub.com/wp-content/uploads/sites/43/2023/06/21095750/sl-featured_triangedb-990x400.jpg) Over the years, there have been multiple cases when iOS devices were infected ...

Continue Reading
New Condi Malware Hijacking TP-Link Wi-Fi Routers for DDoS Botnet Attacks

[![Condi Malware](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() A new malware called **Condi** has been observed exploiting a s ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Vega’s validators able to submit duplicate transactions

A vulnerability exists that allows a malicious validator to trick the Vega network into re-processing past Ethereum events from Vega’s Ethereum bridge. For example, a deposit to the collateral br ...

Continue Reading
The Reddit Files: Hackers Demand $4.5M Ransom and API Access Waiver

By [Deeba Ahmed]() The hackers from the infamous BlackCat ransomware gang (also known as ALPHV) have claimed to have stolen 80GB of data from Reddit. This is a post from HackRead.com Read the original ...

Continue Reading
(RHSA-2023:3677) Important: c-ares security update

The c-ares C library defines asynchronous DNS (Domain Name System) requests and provides name resolving API. Security Fix(es): * c-ares: 0-byte UDP payload Denial of Service (CVE-2023-32067) For more ...

Continue Reading

CVSS3 - HIGH

CVSS2 - MEDIUM

Over 100,000 Stolen ChatGPT Account Credentials Sold on Dark Web Marketplaces

[![ChatGPT](data:image/png;base64,iVBORw0KGgoAAAANSUhEUgAAAAEAAAABCAQAAAC1HAwCAAAAC0lEQVR42mP8Xw8AAoMBgDTD2qgAAAAASUVORK5CYII=)]() Over 100,000 compromised OpenAI ChatGPT account credentials have foun ...

Continue Reading
CVE-2023-2907

Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Marksoft allows SQL Injection.This issue affects Marksoft: through Mobile:v.7.1.7 ; Login:1.4 ; AP ...

Continue Reading

CVSS3 - CRITICAL

CVSS2 - HIGH

CVE-2023-2719

The SupportCandy WordPress plugin before 3.1.7 does not properly sanitise and escape the `id` parameter for an Agent in the REST API before using it in an SQL statement, leading to an SQL Injection ex ...

Continue Reading

Back to Main

Subscribe for the latest news: