PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

New SaaS Security Report Dives into the Concerns and Plans of CISOs in 2021

vendredi 9 juillet 2021 à 13:59
For years, security professionals have recognized the need to enhance SaaS security. However, the exponential adoption of Software-as-a-Service (SaaS) applications over 2020 turned slow-burning embers into a raging fire.  Organizations manage anywhere from thirty-five to more than a hundred applications. From collaboration tools like Slack and Microsoft Teams to mission-critical applications

Critical Flaws Reported in Philips Vue PACS Medical Imaging Systems

vendredi 9 juillet 2021 à 09:00
Multiple security vulnerabilities have been disclosed in Philips Clinical Collaboration Platform Portal (aka Vue PACS), some of which could be exploited by an adversary to take control of an affected system. "Successful exploitation of these vulnerabilities could allow an unauthorized person or process to eavesdrop, view or modify data, gain system access, perform code execution, install

Hackers Use New Trick to Disable Macro Security Warnings in Malicious Office Files

vendredi 9 juillet 2021 à 07:39
While it's a norm for phishing campaigns that distribute weaponized Microsoft Office documents to prompt victims to enable macros in order to trigger the infection chain directly, new findings indicate attackers are using non-malicious documents to disable security warnings prior to executing macro code to infect victims' computers. In yet another instance of malware authors continue to evolve

Critical Flaws Reported in Sage X3 Enterprise Management Software

jeudi 8 juillet 2021 à 13:26
Four security vulnerabilities have been uncovered in the Sage X3 enterprise resource planning (ERP) product, two of which could be chained together as part of an attack sequence to enable adversaries to execute malicious commands and take control of vulnerable systems. These issues were discovered by researchers from Rapid7, who notified Sage Group of their findings on Feb. 3, 2021. The vendor

Experts Uncover Malware Attacks Targeting Corporate Networks in Latin America

jeudi 8 juillet 2021 à 11:58
Cybersecurity researchers on Thursday took the wraps off a new, ongoing espionage campaign targeting corporate networks in Spanish-speaking countries, specifically Venezuela, to spy on its victims. Dubbed "Bandidos" by ESET owing to the use of an upgraded variant of Bandook malware, the primary targets of the threat actor are corporate networks in the South American country spanning across