30 NOVEMBER 2023 WEEKLY NEWSLETTER

BOCRA website

     

NEWSLETTER

 

Zero-Day Alert: Google Chrome Under Active Attack, Exploiting New Vulnerability


                                                     LATEST CYBER HACKS 

 
 
icon

Egyptian E-Payment Vendor Recovering From LockBit Ransomware Attack

The LockBit 3.0 ransomware group successfully encrypted files and also allegedly exfiltrated data from Egyptian e-payment provider Fawry.

icon

Qilin ransomware claims attack on automotive giant Yanfeng

The Qilin ransomware group has claimed responsibility for a cyber attack on Yanfeng Automotive Interiors (Yanfeng), one of the world's largest automotive parts suppliers.

icon

DP World confirms data stolen in cyberattack, no ransomware used

International logistics giant DP World has confirmed that data was stolen during a cyber attack that disrupted its operations in Australia earlier this month. However, the company says no ransomware payloads or encryption was used in the attack.


                                                      VULNERABILITIES

 
 
icon

Hackers start exploiting critical ownCloud flaw, patch    now

Hackers are exploiting a critical ownCloud vulnerability tracked as CVE-2023-49103 that exposes admin passwords, mail server credentials, and license keys in containerized deployments.

icon

PoCs for critical Arcserve UDP vulnerabilities released

Arcserve has fixed critical security vulnerabilities (CVE-2023-41998, CVE-2023-41999, CVE-2023-42000) in its Unified Data Protection (UDP) solution, PoCs for which have beenpublished by Tenable researchers on Monday.

icon

Critical Vulnerability Found in Ray AI Framework

A critical vulnerability in Ray, an open source compute framework for AI, could allow unauthorized access to all nodes, cybersecurity firm Bishop Fox warns.


                                     MALWARES

 
 
icon

DJVU Ransomware's Latest Variant 'Xaro' Disguised as Cracked Software

A variant of a ransomware strain known as DJVU has been observed to be distributed in the form of cracked software.

icon

IMPERIAL KITTEN Deploys Novel Malware Families in Middle East-Focused Operations

CrowdStrike Counter Adversary Operations has been investigating a series of cyberattacks and strategic web compromise (SWC) operations targeting organizations in the transportation, logistics and technology sectors that occurred in October 2023.


                               GENERAL NEWS

 
 
icon

This $40 e-Learning bundle has 21 hours of cybersecurity training

Whether you want to get into cybersecurity, risk management, or another facet of the IT industry, you may be able to start your education on your own with help from a credible e-learning platform like Intellezy Learning.

icon

Discover Why Proactive Web Security Outsmarts Traditional Antivirus Solutions

In a rapidly evolving digital landscape, it's crucial to reevaluate how we secure web environments. Traditional antivirus-approach solutions have their merits, but they're reactive. A new report delves into the reasons for embracing proactive web security solutions, ensuring you stay ahead of emerging threats.