Aggregator
CVE-2022-28356 | Linux Kernel up to 5.17.0 Refcount net/llc/af_llc.c memory leak (Nessus ID 224699)
CVE-2022-31123 | Grafana up to 8.5.13/9.1.7 Plugin signature verification (GHSA-rhxj-gh46-jvw8 / Nessus ID 224697)
CVE-2022-31123 | Oracle Communications Convergent Charging Controller 12.0.4/12.0.5/12.0.6 Common fns signature verification (Nessus ID 224697)
CVE-2022-29217 | PyJWT up to 2.3.x risky encryption (GHSA-ffqj-6fqr-9h24 / Nessus ID 224700)
Operation Sea Elephant Targets Organizations to Steal Research Data
A sophisticated Advanced Persistent Threat (APT) group, known as CNC, has been conducting a cyber espionage campaign dubbed “Operation Sea Elephant” targeting scientific research institutions and universities in South Asia. The operation, which aims to steal research data related to ocean sciences, was recently uncovered by security researchers. The CNC group, previously associated with Patchwork, […]
The post Operation Sea Elephant Targets Organizations to Steal Research Data appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
North Korean IT Workers Exploit GitHub to Launch Global Cyber Attacks
A network of suspected North Korean IT workers is using GitHub to create and backstop fake personas, aiming to infiltrate companies globally, particularly in Japan and the United States. DPRK-Linked Network Targets Companies in Japan and US Cybersecurity firm Nisos has uncovered this operation, which appears to be part of Pyongyang’s efforts to fund its […]
The post North Korean IT Workers Exploit GitHub to Launch Global Cyber Attacks appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
CISA Warns of Actively Exploited VMware Vulnerabilities, Urges Immediate Patching
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) issued an urgent alert on March 4, 2025, adding three critical VMware vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog following confirmed in-the-wild exploitation. The vulnerabilities CVE-2025-22224, CVE-2025-22225, and CVE-2025-22226 allow attackers with privileged access to virtual machines (VMs) to escalate privileges, execute code on hypervisors, and […]
The post CISA Warns of Actively Exploited VMware Vulnerabilities, Urges Immediate Patching appeared first on Cyber Security News.
Stress and Burnout Impacting Vast Majority of IT Pros
Cybercriminals Impersonate Electronic Frontier Foundation to Target Gaming Community
A sophisticated phishing campaign targeting the Albion Online gaming community has been uncovered, revealing a complex operation involving impersonation of the Electronic Frontier Foundation (EFF) and deployment of advanced malware. The campaign, discovered on March 4, 2025, showcases the evolving tactics of cybercriminals in exploiting trust in reputable organizations and leveraging the immersive nature of […]
The post Cybercriminals Impersonate Electronic Frontier Foundation to Target Gaming Community appeared first on GBHackers Security | #1 Globally Trusted Cyber Security News Platform.
A Basic Guide to SQL Server Security Fundamentals
Organizations today collect and generate enormous volumes of sensitive data. Much of it is stored in SQL Server databases, making SQL Server security management crucial for protecting critical applications and services. Implementing strong Microsoft SQL Server security measures helps organizations defend against cyber threats and comply with regulations like GDPR, HIPAA, and PCI DSS. This … Continued
U.S Treasury Sanctions Admin of Nemesis Darknet Marketplace
The U.S. Department of the Treasury’s Office of Foreign Assets Control (OFAC) announced sweeping sanctions today against Behrouz Parsarad, an Iran-based cybercriminal identified as the sole administrator of the Nemesis darknet marketplace. This move marks OFAC’s first recognition as a member of the FBI-led Joint Criminal Opioid and Darknet Enforcement (JCODE) Team, demonstrating a strengthened […]
The post U.S Treasury Sanctions Admin of Nemesis Darknet Marketplace appeared first on Cyber Security News.