The pentester's Swiss knife

CVE-2024-26304

ArubaOS: 4 Critical Flaws Allow Full System Takeover

Recently, Aruba Networks, a subsidiary of Hewlett Packard Enterprise (HPE), disclosed information about ten vulnerabilities in its ArubaOS operating system, four of which are classified as critical. These vulnerabilities could potentially allow arbitrary code...

Iran Cyber Threat UK Retail Cyberattack, CMC Financial Impact Indonesia spyware

Indonesia Caught Spying: Secret Spyware Deal Exposed

According to Amnesty International, Indonesia has been covertly acquiring spyware through a complex network of intermediaries spanning from Israel to Greece, Singapore, and Malaysia. The organization asserts that its investigation has uncovered a systemic...

path traversal vulnerabilities

Hackers Exploit Path Traversal: Prevent Pre-Release Flaws

The Cybersecurity and Infrastructure Security Agency (CISA) and the Federal Bureau of Investigation (FBI) have urged software developers to more proactively identify and remedy path traversal vulnerabilities before releasing products to the market. Such...

Upgrade Windows 11 free

Users Return to Windows 10 as Windows 11 Declines

According to a report by Tom’s Hardware, the statistics website Statcounter has released a new report showing a noticeable decline in the global market share of Windows 11 since February of this year, dropping...

Google Passkey

Google Passkey: Faster, Safer, and Now on 400M Accounts

Google has officially announced that its passwordless access technology, Passkey, is now utilized in over 400 million accounts, with the authentication process having been executed more than a billion times over the past two...

ASRock BIOS

ASRock BIOS Update Targets Intel CPU Stability

Asus recently updated the BIOS for its Z790/Z690 series motherboards, introducing a feature named “Intel Baseline Profile,” which resets all configurations to Intel’s recommended default settings to address stability issues in gaming with the...

Dirty Stream

Android Apps Vulnerable to “Dirty Stream” Attacks

Microsoft has issued a warning to Android users about a new exploit dubbed “Dirty Stream,” which allows malicious applications to overwrite files in another application’s home directory, potentially leading to arbitrary code execution and...

TargetCompany ransomware

MSQL Server Breaches Linked to Mallox Ransomware

Cybersecurity experts from the ASEC laboratory have uncovered a series of sophisticated cyberattacks targeting Microsoft SQL Servers (MS-SQL). The group known as TargetCompany is deploying the Mallox ransomware to encrypt systems and extort victims....