Skip to content

Daily Threat Intel

Menu
  • Vulnerabilities
  • Malware
  • Breaches
  • Enterprise
  • Supply Chain
  • Emerging Threats
  • Cloud
  • About us
Menu

Category: Emerging Threats

CVE-2024-0204 in GoAnywhere MFT is a Ticking Time Bomb

Posted on January 24, 2024

Image source: Shutterstock More than 96% of GoAnywhere MFT assets that security vendor Tenable observed on Jan 23 were vulnerable. Mass attacks could soon begin against a critical authentication bypass flaw in…

Share

China’s UTA0178 Threat Group Backdoors 2,100 Ivanti VPN Appliances Via Recently Disclosed 0-Days

Posted on January 18, 2024

Image Source: Shutterstock Attacker stealing sensitive system data, tampering with built-in Integrity Check to hide signs of malicious activity. Multiple threat actors have joined Chinese advanced persistent threat group UTA0178 in targeting…

Share

LockBit Ransomware Operators Targeting CitrixBleed in Coordinated Attacks

Posted on November 14, 2023

Image source: Shutterstock China’s ICBC, Boeing, Australian logistics giant DP World, major law firm among known victims so far; More than 5,000 organizations worldwide remain unpatched and vulnerable to CVE-2023-4966 Multiple LockBit…

Share

Patch for Cisco Zero Day Bug to Become Available Oct. 22

Posted on October 20, 2023

Image source: Shutterstock Company’s investigation shows attackers actually leveraged two previously unknown bugs, not one, as assumed. There are two important new developments around CVE-2023-20198, the widely exploited zero-day bug in the…

Share

Cisco Recommends Orgs Apply Access Lists to HTTPS Server Feature in IOS XE to Mitigate New 0-Day Threat

Posted on October 17, 2023

Image source: : Shutterstock One security vendor says adversary has used bug to infect thousands of IOS XE devices with an implant for remote code execution. Organizations can protect against the zero-day…

Share

Patch Now: Atlassian Discloses Zero-Day Bug in Confluence Data Center and Server

Posted on October 4, 2023

Image Source: Shutterstock Several customers have reported attackers exploiting the vulnerability to create unauthorized Confluence administrator accounts and to access Confluence instances, company says. Atlassian wants organizations using its on-premises Confluence Data…

Share

CISA Adds Critical TeamCity Flaw to Known Exploited Vulnerabilities Catalog

Posted on October 4, 2023

Image source: Shutterstock Move follows reports this week of threat actors actively exploiting the flaw in ransomware attacks. The US Cybersecurity and Infrastructure Security Agency (CISA) has added a recently disclosed authentication…

Share

Here’s What You Need to Know About the Severe “Looney TUNABLES” Vuln in Multiple Linux Distros

Posted on October 4, 2023

Image source: Shutterstock CVE-2023-4911 is a local privilege escalation flaw that gives attackers a way to gain root access on versions of Debian, Fedora, Ubuntu and other Linux distributions using the glibc…

Share

Researchers Report Attacks Targeting Max Severity Bug in Progress Software’s WS_FTP

Posted on October 2, 2023

Image source: Shutterstock The in-the-wild exploit activity could be a harbinger of things to come. As happened with a zero-day bug in Progress Software’s MOVEit file transfer software earlier this year, attackers…

Share

What You Need to Know About the Critical New Bugs in Progress Software’s WS_FTP Server

Posted on September 29, 2023

Image source: Shutterstock Based on the extensive targeting of the previous bug in the company’s MOVEit product, it’s safe to bet attacks targeting the WS_FTP flaws are imminent. A maximum severity vulnerability…

Share

Posts pagination

Previous 1 2 3 Next
  • Criminals Weaponize Microsoft’s Device Code Authentication in Widescale Phishing Operation
  • Iran-Linked Actors Disrupt Rockwell/Allen Bradley PLCs
  • Are Your Systems Patched Against Storm-1175 Attacks?
  • Calendar Invite Hijacks Gemini AI
  • 12 Bugs in Microsoft’s April 2025 Update to Patch Now
©2026 Daily Threat Intel | Design: Newspaperly WordPress Theme