Arab Security Consultants

  • Home
  • Courses
    • EC-Council Programs
    • EC-Council iWeek Courses
    • PECB
      • ISO/IEC 27001 Lead Implementer
      • ISO/IEC 27001 Lead Auditor
    • Cyber Book
  • Organized Events
    • Arab Security Conference
    • Arab Security Cyber WarGames
  • Services
    • CodeRed
    • OhPhish
    • Risk Assessment
    • Social Engineering
    • Identity & Access Security
    • Vulnerability Assessment
    • Penetration Testing
  • Training centers
  • EC-Council with ASC
  • News
  • Contact Us
  • Home
  • Articles posted by Arab Security Consultants
  • Page 5

Author: Arab Security Consultants

Open Source Antivirus Software ClamAV Detected with Critical RCE Vulnerability

Sunday, 19 February 2023 by Arab Security Consultants

Cisco has recently released security updates to address a severe vulnerability in the ClamAV open-source antivirus engine, which could result in remote code execution on susceptible devices. The vulnerability is tracked as CVE-2023-20032, with a CVSS score of 9.8, and it pertains to remote code execution in the HFS+ file parser component. Versions 1.0.0 and

  • Published in News
Tagged under: cyberSecurity

New M2RAT malware from North Korea’s APT37 targets South Korea

Thursday, 16 February 2023 by Arab Security Consultants

The notorious APT37, a North Korea-linked threat actor, has recently been spotted utilizing a new piece of malware called M2RAT in its ongoing attacks against its southern neighbor. These developments signify a further evolution of the group’s tools and tactics. APT37, also known as Reaper, RedEyes, Ricochet Chollima, and ScarCruft, is associated with North Korea’s

  • Published in News
Tagged under: CyberAttacks

Thousands of WordPress sites have been infected by a massive AdSense fraud campaign

Wednesday, 15 February 2023 by Arab Security Consultants

The malicious black hat redirect malware campaign has now grown larger and more insidious, infecting over 10,800 websites with over 70 bogus domains, mimicking URL shorteners. The main objective of this malware is to artificially increase traffic to pages that contain Google Ads, generating revenue from AdSense ID, which is used for ad fraud. The

  • Published in News
Tagged under: CyberAttacks

Massive HTTP DDoS Attack Hits Record High of 71 Million Requests Per Second

Tuesday, 14 February 2023 by Arab Security Consultants

Cloudflare, the web infrastructure company, stopped an unprecedented DDoS attack on Monday with a record-breaking peak of over 71 million requests per second. This historic “hyper-volumetric” attack was the largest HTTP DDoS attack on record, surpassing the previous 46 million RPS attack that was mitigated by Google Cloud in June 2022. These massive attacks targeted

  • Published in News
Tagged under: CyberAttacks, cyberSecurity

A zero-day vulnerability has been discovered in Apple’s iOS, iPadOS, macOS, and Safari

Tuesday, 14 February 2023 by Arab Security Consultants

Apple has taken swift action to safeguard its users by releasing security updates for its various operating systems, including iOS, iPadOS, macOS, and Safari, to fix a critical zero-day vulnerability. The flaw, tracked as CVE-2023-23529, is a type of confusion bug in the WebKit browser engine that could allow malicious actors to execute arbitrary code

  • Published in News
Tagged under: cyberSecurity, CyberThreats

CISA Warns of Active Attacks Exploiting TerraMaster NAS, Fortra MFT, and Intel Driver Flaws

Sunday, 12 February 2023 by Arab Security Consultants

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning to the public, adding three newly discovered security vulnerabilities to its Known Exploited Vulnerabilities (KEV) catalog. This move is a result of evidence suggesting that these flaws are being actively abused in the wild. Among the three is CVE-2022-24990, a serious bug found

  • Published in News

A security breach at Reddit exposed internal documents and source code

Sunday, 12 February 2023 by Arab Security Consultants

Reddit, the well-known social news aggregation platform, has fallen victim to a vicious and calculated phishing attack. On February 5th, 2023, the attackers targeted Reddit’s employees with plausible-sounding prompts that redirected them to a fake website that appeared to be Reddit’s intranet portal. The sole purpose of this deceitful act was to steal credentials and

  • Published in News
Tagged under: CyberAttacks, cyberSecurity

New OpenSSL updates fix multiple security flaws

Thursday, 09 February 2023 by Arab Security Consultants

The OpenSSL Project has taken immediate action to safeguard its users by releasing critical fixes to address several severe security vulnerabilities in its open-source encryption toolkit. One such vulnerability, tracked as CVE-2023-0286, is a high-severity bug that could potentially put users at risk of malicious attacks. According to the advisory issued by the maintainers, the

  • Published in News
Tagged under: cyberSecurity

The vulnerability of multiple document management systems has been exposed in an unprecedented manner

Thursday, 09 February 2023 by Arab Security Consultants

Eight unpatched security vulnerabilities have been found in open-source and freemium document management systems (DMS) offered by four vendors, LogicalDOC, Mayan, ONLYOFFICE, and OpenKM.These flaws were revealed by cybersecurity firm Rapid7 and allow for a malicious actor to trick a user into saving a harmful document on the platform, and once indexed, the attacker can

  • Published in News
Tagged under: cyberSecurity, CyberThreats

Hackers in Russia use Graphiron malware to steal Ukrainian data

Thursday, 09 February 2023 by Arab Security Consultants

A Russia-affiliated adversary has been caught utilizing new information-stealing malware in cyberattacks aimed at Ukraine. Named Graphiron by Symantec, a subsidiary of Broadcom, the malware is the work of an espionage group known as Nodaria, which is monitored by the Computer Emergency Response Team of Ukraine (CERT-UA) under the label UAC-0056. According to the Symantec

  • Published in News
Tagged under: CyberAttacks, cyberSecurity
  • 3
  • 4
  • 5
  • 6
  • 7
  • Home
  • Contact Us
  • Services
  • Training Centers
  • GET SOCIAL

Arab Security Consultants | Copyright © 2023 All rights reserved.

TOP