There are two critical RCE vulnerabilities in Java’s Spring Framework.

Wed, 06 Apr 2022 9:32:00
0 minutes, 23 seconds
Dan
  • A new critical Remote Code Execution (RCE) vulnerability (CVE-2022-22963) was discovered in Java’s Spring Cloud Functions. There are patches available for this vulnerability which should be applied to affected systems as soon as possible.
  • A 0-day vulnerability in Spring Core that could lead to u...

Hackers Breach Mailchimp Email Marketing Firm to Launch Crypto Phishing Scams

Wed, 06 Apr 2022 9:27:00
0 minutes, 45 seconds
Dan

Email marketing service Mailchimp on Monday revealed a data breach that resulted in the compromise of an internal tool to gain unauthorized access to customer accounts and stage phishing attacks.

The development was first reported by Bleeping Computer.

The company, which was acquired by financia...

Researchers Uncover New Android Spyware With C2 Server Linked to Turla Hackers

Wed, 06 Apr 2022 9:19:00
0 minutes, 31 seconds
Dan

An Android spyware application has been spotted masquerading as a "Process Manager" service to stealthily siphon sensitive information stored in the infected devices.

Interestingly, the app — that has the package name "com.remote.app" — establishes contact with a remote command-and-control server,...