Information Security News Blog

Diagram illustrating the Klue supply chain breach and compromised Salesforce OAuth tokens 0

Klue Supply Chain Breach Compromises LastPass Data

Target/Victims: Klue, LastPass, and others. Delivery Vector: Compromised integration service credentials from 2022. Key Capabilities: Unauthorized Salesforce CRM access via stolen OAuth tokens. Threat Actor: Icarus ransomware group (Suspected). Source: Klue, LastPass, and affected...

Diagram illustrating the Squidbleed vulnerability and memory leakage in Squid proxy servers 0

Squidbleed Vulnerability Exposes Legacy Proxies

A critical flaw within the File Transfer Protocol (FTP) implementation an antiquated mechanism for transmitting data between computers has resided in the Squid proxy server for nearly 29 years. This severe defect enables unauthorized...

Diagram showing how the AryStinger botnet infects legacy D-Link routers 0

AryStinger Botnet Infects Outdated D-Link Routers

Malware Family: AryStinger Threat Actor: Unknown (Suspected) Victims: Over 4,000 legacy D-Link routers and NAS systems Delivery Vector: Exploitation of older CVEs Key Capabilities: Traffic proxying, distributed scanning, DNS hijacking Source: XLab (Qianxin) Over...