Over 400 IPs Exploiting Multiple SSRF Vulnerabilities in Coordinated Cyber Attack https://firewall.firm.in/wp-content/uploads/2025/03/code.png Mar 12, 2025Ravie LakshmananCloud Security / Vulnerability Threat intelligence firm GreyNoise is warning of a “coordinated surge” in the exploitation of Server-Side Request Forgery (SSRF) vulnerabilities spanning multiple platforms. “At least 400 IPs have been seen actively exploiting multiple SSRF CVEs simultaneously, with notable overlap between attack attempts,” ...
Read More »Vulnerabilities & Exploits
Kaspersky: Stealer malware leaked over 2 million bank cards – ET CISO
Kaspersky: Stealer malware leaked over 2 million bank cards – ET CISO https://etimg.etb2bimg.com/thumb/msid-118774806,imgsize-3834,width-1200,height=765,overlay-etciso/data-breaches/kaspersky-stealer-malware-leaked-over-2-million-bank-cards.jpg Kaspersky Digital Footprint Intelligence estimates that 2.3 million bank cards were leaked on the dark web, based on an analysis of data-stealing malware log files from 2023-2024. On average, every 14th infostealer infection results in stolen credit card information, with nearly 26 million devices compromised by infostealers, ...
Read More »Researchers Link CACTUS Ransomware Tactics to Former Black Basta Affiliates
Researchers Link CACTUS Ransomware Tactics to Former Black Basta Affiliates https://firewall.firm.in/wp-content/uploads/2025/03/malware-ransomware.png Mar 04, 2025Ravie LakshmananCybercrime / Threat Intelligence Threat actors deploying the Black Basta and CACTUS ransomware families have been found to rely on the same BackConnect (BC) module for maintaining persistent control over infected hosts, a sign that affiliates previously associated with Black Basta may have transitioned to CACTUS. ...
Read More »Government has a google chrome warning for Windows and Mac users – ET CISO
Government has a google chrome warning for Windows and Mac users – ET CISO https://etimg.etb2bimg.com/thumb/msid-117592387,imgsize-57114,width-1200,height=765,overlay-etciso/data-breaches/government-has-a-google-chrome-warning-for-windows-and-mac-users.jpg India’s cybersecurity watchdog, CERT-In, has warned about two vulnerabilities in the popular Google Chrome browser that hackers can exploit. These new warnings are for Chrome users mostly across Mac, PC and laptop platforms and not that much for smartphone users. These vulnerabilities can allow attackers ...
Read More »CISA Adds Microsoft and Zimbra Flaws to KEV Catalog Amid Active Exploitation
CISA Adds Microsoft and Zimbra Flaws to KEV Catalog Amid Active Exploitation https://firewall.firm.in/wp-content/uploads/2025/02/cisa.png Feb 26, 2025Ravie LakshmananEnterprise Security / Vulnerability The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Tuesday placed two security flaws impacting Microsoft Partner Center and Synacor Zimbra Collaboration Suite (ZCS) to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The vulnerabilities in ...
Read More »DeepSeek removed from app stores in South Korea amid data privacy concerns – ET CISO
DeepSeek removed from app stores in South Korea amid data privacy concerns – ET CISO https://etimg.etb2bimg.com/thumb/msid-118319182,imgsize-22150,width-1200,height=765,overlay-etciso/data-breaches/deepseek-removed-from-app-stores-in-south-korea-amid-data-privacy-concerns.jpg Chinese AI app, DeepSeek, has been removed from South Korean app stores pending a review of how it handles user data. According to news agency AFP, Choi Jang-hyuk, vice chairperson of Seoul’s Personal Information Protection Commission, told a press conference that DeepSeek has been ...
Read More »LightSpy Expands to 100+ Commands, Increasing Control Over Windows, macOS, Linux, and Mobile
LightSpy Expands to 100+ Commands, Increasing Control Over Windows, macOS, Linux, and Mobile https://firewall.firm.in/wp-content/uploads/2025/02/spyware.png Cybersecurity researchers have flagged an updated version of the LightSpy implant that comes equipped with an expanded set of data collection features to extract information from social media platforms like Facebook and Instagram. LightSpy is the name given to a modular spyware that’s capable of infecting ...
Read More »California students take legal action against US education department over massive data breach – ET CISO
California students take legal action against US education department over massive data breach – ET CISO https://etimg.etb2bimg.com/thumb/msid-118162922,imgsize-119596,width-1200,height=765,overlay-etciso/data-breaches/california-students-take-legal-action-against-us-education-department-over-massive-data-breach.jpg A coalition of California college students has filed a lawsuit against the US Department of Education accusing an oversight task force associated with tech magnate Elon Musk of unlawfully accessing confidential student financial records. The legal petition spearheaded by the University of California ...
Read More »Palo Alto Networks Patches Authentication Bypass Exploit in PAN-OS Software
Palo Alto Networks Patches Authentication Bypass Exploit in PAN-OS Software https://firewall.firm.in/wp-content/uploads/2025/02/PaloAlto-Networks.png Feb 13, 2025Ravie LakshmananNetwork Security / Vulnerability Palo Alto Networks has addressed a high-severity security flaw in its PAN-OS software that could result in an authentication bypass. The vulnerability, tracked as CVE-2025-0108, carries a CVSS score of 7.8 out of 10.0. The score, however, drops to 5.1 if access ...
Read More »PayPal agrees to pay $2 million to settle for this data breach – ET CISO
PayPal agrees to pay $2 million to settle for this data breach – ET CISO https://etimg.etb2bimg.com/thumb/msid-117619031,imgsize-20694,width-1200,height=765,overlay-etciso/data-breaches/paypal-agrees-to-pay-2-million-to-settle-for-this-data-breach.jpg PayPal has agreed to pay a $2 million fine to New York State for failing to comply with cybersecurity regulations. This led to a data breach in 2022 that exposed the personal information of 35,000 customers. The New York Department of Financial Services (DFS) ...
Read More »
Firewall Security Company India Complete Firewall Security Solutions Provider Company in India











