The Security Blog From Gridinsoft

Critical Auth Bypass Vulnerability in Apache OFBiz: CVE-2023-5146в

Apache OFBiz Vulnerability Exposes Millions of Systems

The cyber world has been rattled by the recent discovery of a critical zero-day vulnerability in Apache OFBiz, known as…

YouTube Videos Promote Software Cracks With Lumma Stealer

Researchers have discovered a cybersecurity threat that targets users through YouTube videos. These videos offer pirated software but are being…

Two Adobe ColdFusion Vulnerabilities Exploited in The Wild

Two vulnerabilities in Adobe ColdFusion are exploited in real-world attacks, the Cybersecurity & Infrastructure Security Agency (CISA) warns. Both issues…

Tortilla (Babuk) Ransomware Decryptor Available

On January 9, 2024, Avast and Cisco Talos announced the release of a free decryptor for one of the Babuk…

OAuth2 Session Hijack Vulnerability: Details Uncovered

A sophisticated exploit targeting Google’s OAuth2 authentication system was uncovered by Prisma threat actor. This exploit leverages undocumented functionalities within…

LastPass Breach Is Bigger Than It Was Expected

LastPass Breach Investigation Goes On, Things are Even Worse

LastPass, owned by GoTo (formerly LogMeIn) and with over 30…

YouTube and Pixel smartphones

YouTube Video Causes Pixel Smartphones to Reboot

Users have found that Pixel smartphones powered by Google Tensor…

imitating a voice with AI

The Researcher Hacked His Own Bank Account by Imitating a Voice with AI

The journalist Vice Motherboard Joseph Cox hacked the bank account…

heads of cybersecurity departments

Nearly 50% of Cybersecurity Leaders Will Change Jobs by 2025

According to a new report from Gartner, by 2025, nearly…

Activision's Slack

Hackers Broke into Activision’s Slack and Stole Data

Activision, the publisher of computer games (including the Call of…

new infostealer Stealc

Cybersecurity Experts Discovered a New Stealc Infostealer

ekoia experts report that a new infostealer, Stealc, has appeared…

Attackers hacked GoDaddy

Hackers Attacked GoDaddy and Stayed on the Company’s Systems for Several Years

One of the world’s largest hosters and domain name registrars,…

FatalRAT in Google Ads

FatalRAT Malware Masks As Popular Apps in Google Ads

ESET experts have discovered the FatalRAT malware, which targets Chinese-speaking…

AI chatbot in Bing

Bing’s Built-In AI Chatbot Misinforms Users and Sometimes Goes Crazy

More recently, Microsoft, together with OpenAI (the one behind the…

Namecheap sent out phishing emails

Domain Registrar Namecheap Sent Phishing Emails to Its Customers

Domain registrar Namecheap’s email was hacked last weekend and the…

Clop and GoAnywhere MFT

Clop Operators Claim to Hack 130 Organizations Using GoAnywhere MFT Bug

Clop ransomware operators claim to be behind recent attacks on…

bypass ChatGPT restrictions

Hackers Are Promoting a Service That Allows Bypassing ChatGPT Restrictions

Check Point researchers say that the OpenAI API is poorly…

AI Assistant

Hello! 👋 How can I help you today?