
Blog Series
Month: October 2024

ClamAV Vulnerabilities Fixed in Ubuntu...
Two security vulnerabilities were discovered in ClamAV, a widely used antivirus software for Linux systems. These issues could allow attackers to compromise the security of your system and potentially gain...
Web Server vs. Application Server:...
Web servers handle static content (HTML, CSS, images) and focus on fast, efficient delivery using HTTP/HTTPS. Application servers manage dynamic content, execute business logic, and provide features like transaction management,...
Chinese APT Group Infiltrates US...
As per recent media reports, a Chinese APT group has been observed targeting multiple United States (US) Internet Service Providers (ISPs) as part of an attack campaign. The primary aim...
Iranian APT Facilitating Remote Access...
As per recent reports, an Iranian Advanced Persistent Threat (APT) hacker is now playing a facilitator role in aiding remote access to target networks. The Iranian APT hacker is believed...
Critical GNU Emacs Vulnerabilities Fixed:...
Recently, Canonical issued security updates to address several Emacs vulnerabilities in multiple Ubuntu releases. Emacs is one of the popular text editors in Linux operating systems. The identified vulnerabilities primarily...
FOUNDATION Breach: Default Credentials Exploited...
Huntress, a cybersecurity platform, has recently uncovered the FOUNDATION breach in which threat actors are leveraging default credentials. As per media reports, the current targets of these attacks appear to...
Addressing Git Vulnerabilities in Ubuntu...
Canonical has released security updates for Ubuntu 16.04 ESM and Ubuntu 18.04 ESM to address multiple vulnerabilities in Git, a powerful and widely-used distributed version control system. These vulnerabilities may...
Future of CentOS Stream 9:...
As of June 30, 2024, the CentOS Project ceased all updates and releases for CentOS Linux. CentOS Stream serves as the upstream development platform for future RHEL releases. CentOS Stream...
Microsoft Alert: New INC Ransomware...
As per a recent Microsoft alert, a threat actor with malicious financial motives has been observed leveraging a new INC ransomware strain to target the health sector in the United...
CISA and FBI Issue Alert...
Cross-site scripting (XSS) vulnerabilities continue to be a major concern in today’s software landscape, despite being preventable. CISA and FBI have issued a Secure by Design alert to reduce the...
GitLab Patches: Severe SAML Authentication...
A critical SAML authentication bypass flaw was recently identified in GitLab’s Community Edition (CE) and Enterprise Edition (EE). As of now, GitLab patches aiming to fix the flaw have been...