Pro-Russia Hacking Group Exploits Zero-Day Vulnerability in Roundcube Webmail Servers
Winter Vivern, a pro-Russia hacking group, targets government organizations and a think tank by exploiting a zero-day vulnerability in Roundcube webmail servers.
Winter Vivern, a pro-Russia hacking group, targets government organizations and a think tank by exploiting a zero-day vulnerability in Roundcube webmail servers.
VMware has released patches for two vulnerabilities in its vCenter Server software, including a critical flaw in the DCE/RPC protocol implementation that allows remote code execution, emphasizing the need for prompt updates to ensure system security.
BHI Energy, a subsidiary of Westinghouse Electric Company, reveals details of a ransomware attack by the Akira threat actor, emphasizing the need for robust cybersecurity measures in the energy sector.
Citrix has issued a warning to customers about ongoing attacks exploiting a critical vulnerability in its NetScaler ADC and Gateway products, which allows threat actors to steal authentication sessions and potentially bypass multifactor authentication, posing a significant risk to organizations.
1Password’s Okta instance is breached, raising concerns about the security of sensitive data and the potential for further attacks.
Between 2016 and mid-October 2023, healthcare organizations in the US experienced 539 reported ransomware attacks, compromising 52 million patient records and causing an estimated $77.5 billion in financial losses due to downtime.