Author - Emma Davis

Google Decided to Fight Hacked Versions of Cobalt Strike

Google Cloud Threat Intelligence announced the release of YARA rules, as well as a collection of indicators of compromise VirusTotal, which should facilitate the detection of Cobalt Strike components and prevent abuse of this...

F5 Fixes Serious Vulnerabilities in BIG-IP and BIG-IQ

F5 developers have released patches for BIG-IP and BIG-IQ products and the patches fixed two serious vulnerabilities that could allow unauthenticated attackers to remotely execute arbitrary code (RCE) on vulnerable endpoints. ...

November Windows Updates Broke Kerberos Authentication

Microsoft says they are already aware of a new issue in Windows updates that causes corporate domain controllers to fail when using Kerberos authentication, as well as other authentication issues that have emerged since the...

Access to AstraZeneca Databases Was in the Public Domain

Due to human error, confidential customer data of the international pharmaceutical company AstraZeneca was in the public domain. Hussain, director of security at SpiderSilk, said that in 2021, the developer left the credentials...

Dozens of PyPI Packages Distribute W4SP Malware

Phylum, a supply chain security company, discovered 29 malicious packages in the PyPI repository (the list can be found below) that infected their victims with the W4SP data-stealing malware. me remind you that we also said that...

Microsoft Developers Fixed a Critical Bug in Azure Cosmos DB

Orca Security analysts have discovered a critical vulnerability affecting Jupyter Notebook for Azure Cosmos DB. The problem that researchers dubbed CosMiss, allowed unauthorized access to containers for reading and writing, as...