Microsoft fixed two zero-day bugs exploited in malware attacks.
HTTP/2 CONTINUATION Flood technique can be exploited in DoS attacks.
BianLian group exploits JetBrains TeamCity bugs in ransomware attacks.
Experts released PoC exploit for critical Progress Software OpenEdge bug.
Five Eyes alliance warns of attacks exploiting known Ivanti Gateway flaws.
CISA: Cisco ASA/FTD bug CVE-2020-3259 exploited in ransomware attacks.
Multiple malware used in attacks exploiting Ivanti VPN flaws.
Experts released PoC exploit for Fortra GoAnywhere MFT flaw CVE-2024-0204.
Russia-linked APT29 group exploited WinRAR 0day in attacks against embassies.
Critical Confluence flaw exploited in ransomware attacks.
Experts released PoC exploit code for Cisco IOS XE flaw CVE-2023-20198.
iLeakage attack exploits Safari to steal data from Apple devices.
Winter Vivern APT exploited zero-day in Roundcube webmail software in recent attacks.
Experts released PoC exploit code for VMware Aria Operations for Logs flaw.
CISA adds Adobe Acrobat Reader flaw to its Known Exploited Vulnerabilities catalog.
Multiple experts released exploits for Linux local privilege escalation flaw Looney Tunables.
Apple fixed the 17th zero-day flaw exploited in attacks.
Atlassian Confluence zero-day CVE-2023-22515 actively exploited in attacks.
Recently patched Apple and Chrome zero-days exploited to infect devices in Egypt with Predator spyware.
Zero-day in Cisco ASA and FTD is actively exploited in ransomware attacks.
This Cyber News was published on securityaffairs.com. Publication date: Thu, 30 May 2024 19:43:06 +0000