Cl0p ransomware gang claims first victims of the MOVEit vulnerability

Categories: Exploits and vulnerabilities

Categories: News

Categories: Ransomware

Tags: Progress

Tags: MOVEit

Tags: Transfer

Tags: CVE-2023-34362

Tags: BBC

Tags: Zellis

Tags: BA

The first victims of the ongoing attacks on vulnerable MOVEit Transfer instances are coming forward. The Cl0p ransomware gang claims it is behind the attacks.

(Read more…)

The post Cl0p ransomware gang claims first victims of the MOVEit vulnerability appeared first on Malwarebytes Labs.

Read more

Update now! MOVEit Transfer vulnerability actively exploited

Categories: Exploits and vulnerabilities

Categories: News

Tags: Progress

Tags: MOVEit

Tags: vulnerability

Tags: human2.aspx

A critical vulnerability in Progress MOVEit Transfer is being used to steal large amounts of data

(Read more…)

The post Update now! MOVEit Transfer vulnerability actively exploited appeared first on Malwarebytes Labs.

Read more

Microsoft gives Apple a migraine

Categories: Exploits and vulnerabilities

Categories: News

Tags: Apple

Tags: macOS

Tags: Ventura 13.4

Tags: Monterey 12.6.6

Tags: Big Sur 11.7.7

Tags: libxpc

Tags: SIP

Tags: XPC

Tags: NVRAM

Tags: CVE-2023-32369

Tags: Migraine

Microsoft has released details about a vulnerability that can bypass macOS’s System Integrity Protection

(Read more…)

The post Microsoft gives Apple a migraine appeared first on Malwarebytes Labs.

Read more

[updated] Barracuda Networks patches zero-day vulnerability in Email Security Gateway

Categories: Exploits and vulnerabilities

Categories: News

Barracuda Networks issued a patch for a zero-day vulnerability in its Email Security Gateway that was actively being exploited

(Read more…)

The post [updated] Barracuda Networks patches zero-day vulnerability in Email Security Gateway appeared first on Malwarebytes Labs.

Read more

Update now! Apple issues patches for three actively used zero-days

Categories: Exploits and vulnerabilities

Categories: News

Tags: Apple

Tags: RSR

Tags: CVE-2023-32409

Tags: CVE-2023-28204

Tags: CVE-2023-32373

Tags: out of bounds

Tags: use after free

Apple issued information about patches against three actively exploited zero-days in WebKit. One vulnerability is new, two were patched earlier this month.

(Read more…)

The post Update now! Apple issues patches for three actively used zero-days appeared first on Malwarebytes Labs.

Read more

KeePass vulnerability allows attackers to access the master password

Categories: Exploits and vulnerabilities

Categories: News

Categories: Personal

Tags: KeePass

Tags: memory dump

Tags: CVE-2023-32784

There is a Proof-of-Concept available for an unpatched vulnerability in KeePass that allows attackers to dump the master password.

(Read more…)

The post KeePass vulnerability allows attackers to access the master password appeared first on Malwarebytes Labs.

Read more