Cybersecurity Architecture
VLC Media Player website banned in India
VLC Media Player website banned in India

25 Aug 2022

VLC Media Player one of India’s most popular media players has being banned in the country. User can’t download the program’s executable file (windows exe file) for installation as the VLC Media Player website doesn’t works in India anymore.  However, if you already have VLC media player installed and the exe file already downloaded there […]

Read More
Cisco Confirms Breached By Ransomware Group
Cisco Confirms Breached By Ransomware Group

12 Aug 2022

Cisco has confirmed that the Yanluowang ransomware group was hacked their data. This happens when the Yanluowang ransomware group publishes a partial list of files which was stolen from cisco. Cisco stated that they become aware of a breach on 24th May 2022 and has been working to remediate since then. “During the investigation, it […]

Read More
Twitter confirms that a data breach has affected millions of accounts
Twitter confirms that a data breach has affected millions of accounts

8 Aug 2022

On 5th August 2022, Twitter released a security advisory saying, “In January 2022, we received a report through our bug bounty program of a vulnerability in Twitter’s systems. As a result of the vulnerability, if someone submitted an email address or phone number to Twitter’s systems, Twitter’s systems would tell the person what Twitter account […]

Read More
New Android Apps in the Play Store Contain Malware
New Android Apps in the Play Store Contain Malware

28 Jul 2022

In the recent, write up by Dr.Web on virus activity on mobile devices he mentioned that he has discovered many malicious apps. “Over the month, Doctor Web’s malware analysts discovered dozens of malicious apps on Google Play. Among them were adware trojans, fake apps used by scammers, info-stealers targeting confidential data, and others.” 30 applications […]

Read More
Is Microsoft Teams down?
Is Microsoft Teams down?

21 Jul 2022

On July 21st on the official Microsoft twitter account for update on certain service incidents said that they are investigating an outage where users were unable to access Microsoft Teams or leverage any features on the app, but have not disclose any details on how many users were affected. We’ve received reports of users being […]

Read More
Harvest Credentials on Fraudulent Facebook Pages
Harvest Credentials on Fraudulent Facebook Pages

20 Jul 2022

Computer Emergency Response Team of Ukraine (CERT-UA) has released an article reporting that number of fraudulent pages on the Facebook is used to harvest credentials and compromise monetary information. The fraudulent page called “Unified Compensation Center for the Return of Unpaid Funds” directs to malicious link. Victims are then urges to enter personal identity information […]

Read More
$8.1 million stole in Uniwasp phishing attack
$8.1 million stole in Uniwasp phishing attack

19 Jul 2022

Uniswap a decentralized cryptocurrency exchange has loss millions of dollars in a phishing attack. On 13th July 2022, security vendor bleeping computer reported that a phishing attack on the Decentralized Cryptocurrency Exchange (DEX) platform Uniwasp, has loss 7,500 ether (ETH) ($8.1 million). 1/ Yesterday, some Uniswap LPs unfortunately fell for a phishing scam, a problem […]

Read More
Twitter and YouTube Accounts of British Military Hacked by threat actors
Twitter and YouTube Accounts of British Military Hacked by threat actors

14 Jul 2022

On 4th July 2022, the Britain’s Ministry of Defense tweeted “The breach of the Army’s Twitter and YouTube accounts that occurred earlier today has been resolved and an investigation is underway,” The breach of the Army’s Twitter and YouTube accounts that occurred earlier today has been resolved and an investigation is underway. The Army takes […]

Read More
Threat actors are still Exploiting Log4Shell vulnerability
Threat actors are still Exploiting Log4Shell vulnerability

7 Jul 2022

Cybersecurity & Infrastructure Security Agency (CISA) and the United States Coast Guard Cyber Command (CGCYBER) released a joint Cybersecurity Advisory (CSA) on june 23rd 2022 warning cyber threat actors, including state-sponsored advanced persistent threat (APT) actors, still continue to exploit Log4Shell vulnerability tracked as CVE-2021-44228 in VMware Horizon and Unified Access Gateway (UAG) servers. The […]

Read More
U.S. FCC commissioner has requests google and Apple to take off TikTok from app stores
U.S. FCC commissioner has requests google and Apple to take off TikTok from app stores

1 Jul 2022

On 24th June 2022, Brendan Carr the Federal Communication Commission Commissioner has sent a letter to CEO’s of Apple and Google requesting to remove TikTok from their app stores or to provide an explanation on why they think there should not. The reason for this request as mentioned in the letter is “It is clear […]

Read More
Top 25 Most Dangerous Software Weaknesses – 2022 CWE
Top 25 Most Dangerous Software Weaknesses – 2022 CWE

29 Jun 2022

On June 28th 2022, Mitre shared the 2022 Common Weakness Enumeration (CWE™) Top 25 Most Dangerous Software Weaknesses list (CWE™ Top 25). “This list demonstrates the currently most common and impactful software weaknesses. Often easy to find and exploit, these can lead to exploitable vulnerabilities that allow adversaries to completely take over a system, steal […]

Read More
Email bug lets attackers bypass Security
Email bug lets attackers bypass Security

16 Jun 2022

As notified by Cisco of the security flaw (tracked as CVE-2022-20798) was found in the external authentication functionality of virtual and hardware Cisco Email Security Appliance (ESA) and Cisco Secure Email and Web Manager appliances. Customers were requested this week to patch this critical vulnerability that allow threat actors to bypass authentication login in to […]

Read More