The Security Blog From Gridinsoft

Critical Auth Bypass Vulnerability in Apache OFBiz: CVE-2023-5146в

Apache OFBiz Vulnerability Exposes Millions of Systems

The cyber world has been rattled by the recent discovery of a critical zero-day vulnerability in Apache OFBiz, known as…

YouTube Videos Promote Software Cracks With Lumma Stealer

Researchers have discovered a cybersecurity threat that targets users through YouTube videos. These videos offer pirated software but are being…

Two Adobe ColdFusion Vulnerabilities Exploited in The Wild

Two vulnerabilities in Adobe ColdFusion are exploited in real-world attacks, the Cybersecurity & Infrastructure Security Agency (CISA) warns. Both issues…

Tortilla (Babuk) Ransomware Decryptor Available

On January 9, 2024, Avast and Cisco Talos announced the release of a free decryptor for one of the Babuk…

OAuth2 Session Hijack Vulnerability: Details Uncovered

A sophisticated exploit targeting Google’s OAuth2 authentication system was uncovered by Prisma threat actor. This exploit leverages undocumented functionalities within…

Malware Notebook Data

Emotet Botnet Resumed Activity after Five Months of Inactivity

The Emotet botnet resumed activity and began sending out malicious…

Critical vulnerability in OpenSSL

OpenSSL Patches Released and Critical Vulnerability Turns Out to be Not So Critical

At the end of October, OpenSSL developers warned that the…

Azov ransomware sets up analysts and tries to show up as pro-Ukrainian

Azov Ransomware Tries to Set Up Cybersecurity Specialists

Azov ransomware, a newcomer to the encryption malware market, appears…

Raspberry Robin worm operators

Raspberry Robin Worm Operators Now Trade Access

Microsoft researchers reported that the operators of the hack group,…

critical vulnerability in OpenSSL

OpenSSL Fixes First Critical Vulnerability Since 2016

The developers of the OpenSSL project have informed users that…

hacker group Vice Society

Microsoft Links Hacker Group Vice Society to Several Ransomware Campaigns

Microsoft experts have published a report on the hacker group…

Atomic Energy Organization of Iran

Hacktivists Stole 100,000 Emails from Atomic Energy Organization of Iran

The Atomic Energy Organization of Iran (AEOI) reported that the…

GitHub repositories spread malware

Thousands of GitHub Repositories Spread Malware That Is Disguised as Exploits

Experts from the Leiden Institute for Advanced Computer Science have…

vulnerability in Apache Commons Text

New Vulnerability in Apache Commons Text Is Already Being Attacked by Hackers

According to WordPress security firm Defiant, attempts have already been…

Ransom Cartel and REvil

Researchers Linked Ransom Cartel members to Famous Hack Group REvil

Experts from the Palo Alto Network analysed the Ransom Cartel…

New PowerShell Backdoor

New PowerShell Backdoor Masquerades as a Windows Update

Cybersecurity experts from SafeBreach have found a new, previously undocumented…

AI Assistant

Hello! 👋 How can I help you today?