Critical Apache Log4j2 flaw still threatens global finance.
CISA adds Apache Flink flaw to its Known Exploited Vulnerabilities catalog.
CISA adds GitLab flaw to its Known Exploited Vulnerabilities catalog.
Russia-linked APT28 used post-compromise tool GooseEgg to exploit CVE-2022-38028 Windows flaw.
Critical Fortinet's FortiClient EMS flaw actively exploited in the wild.
PoC exploit for critical RCE flaw in Fortra FileCatalyst transfer tool released.
Hackers exploited WordPress Popup Builder plugin flaw to compromise 3,300 sites.
Threat actors exploit Apache ActiveMQ flaw to deliver the Godzilla Web Shell.
APT group UAC-0099 targets Ukraine exploiting a WinRAR flaw.
Russia-linked APT28 group spotted exploiting Outlook flaw to hijack MS Exchange accounts.
Threat actors started exploiting critical ownCloud flaw CVE-2023-49103.
Critical Confluence flaw exploited in ransomware attacks.
Experts released PoC exploit code for Cisco IOS XE flaw CVE-2023-20198.
Experts released PoC exploit code for VMware Aria Operations for Logs flaw.
CISA adds second Cisco IOS XE flaw to its Known Exploited Vulnerabilities catalog.
CISA adds Adobe Acrobat Reader flaw to its Known Exploited Vulnerabilities catalog.
Apple fixed the 17th zero-day flaw exploited in attacks.
Phishing campaign targeted US executives exploiting a flaw in Indeed job search platform.
WS FTP flaw CVE-2023-40044 actively exploited in the wild.
US CISA added critical Apache RocketMQ flaw to its Known Exploited Vulnerabilities catalog.
This Cyber News was published on securityaffairs.com. Publication date: Sat, 01 Jun 2024 16:43:08 +0000