Events2Join

APT|C|60 Exploits Zero|Day Vulnerabilities in WPS Office to Install ...


Blackwood hackers hijack WPS Office update to install malware

A previously unknown advanced threat actor tracked as 'Blackwood' is using sophisticated malware called NSPX30 in cyberespionage attacks against companies and ...

Last Week in Security - 2024-09-05 - SIXGEN

The hackers used a flaw in Chromium's core engine to exploit the vulnerability, enabling them to install malware and gain complete control over ...

Windows MSHTML Platform Zero Day Vulnerability Actively ...

Vulnerability CVE-2024-43461 is identified as a Microsoft Windows MSHTML Platform spoofing vulnerability that has an assigned high-severity CVSS base score of ...

Understanding Zero-Day Attacks on WPS: A Comprehensive Analysis

The discovery of two critical zero-day vulnerabilities in WPS Office by ESET researchers has brought to light the persistent threats posed by advanced ...

Cyber Security Week in Review: August 30, 2024

Google addresses yet another Chrome zero-day, Russian hackers caught using commercial spyware to compromise victims, and more.

0 Day News - Packet Storm

Citrix, Cisco, Fortinet Zero-Days Among 2023's Most Exploited Vulnerabilities: Posted Nov 13, 2024: Source Security Week. tags | headline, hacker, flaw, ...

Hackers have exploited a WPS Office zero-day to deploy dangerous ...

The popular WPS Office workplace productivity software suite carried a vulnerability which allowed some threat actors to deploy backdoors to their target's ...

Microsoft patches six actively exploited vulnerabilities - CSO Online

Microsoft's August Patch Tuesday covered 10 zero-day flaws, of which six are being exploited in the wild and four are publicly disclosed.

APT-C-60 Group Exploit WPS Office Flaw to Deploy SpyGlace ...

A cyber espionage group known as APT-C-60 has been exploiting a critical remote code execution flaw in Kingsoft WPS Office, identified as CVE-2024-7262 with ...

CVE-2023-32548 Detail - NVD

OS command injection vulnerability exists in WPS Office version 10.8.0.6186. If a remote attacker who can conduct a man-in-the-middle attack connects the ...

WPS Office Vulnerabilities Expose 200 Million Users: CVE-2024 ...

Protect your system against WPS Office flaws. Find out how the critical security flaws identified as CVE-2024-7262 and CVE-2024-7263 could ...

CVE-2024-7263 - Exploits & Severity - Feedly

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.13489 on Windows ...

CVE-2024-7262 - Kingsoft WPS Office Path Traversal Vulnerability

Improper path validation in promecefpluginhost.exe in Kingsoft WPS Office version ranging from 12.2.0.13110 to 12.2.0.16412 (exclusive) on ...

Cyble IT Vulnerability Report: Microsoft Zero Days Under Attack

A pair of actively exploited Microsoft zero-day vulnerabilities highlighted an active November Patch Tuesday, which also saw updates from ...

Cyware Weekly Threat Intelligence - August 26–30 - Aug 30, 2024

The Good In response to the rising tide of cyber threats, organizations and governments are stepping up their efforts to protect critical infrastructure and ...

Exploitation for Client Execution, Technique T1203 - MITRE ATT&CK®

Adversaries may exploit software vulnerabilities in client applications to execute code. Vulnerabilities can exist in software due to unsecure coding practices.

Blackwood Hackers Exploit WPS Office Update Mechanism for ...

Okta, a leading identity and access management provider, has released a critical security update for its Verify agent on Windows to address a ...

Known Actively Exploited Vulnerabilities Round-up (23.08.24-29.08 ...

As such, they present perhaps the greatest ongoing cybersecurity risk to businesses, and a very real threat. The vulnerabilities are often being ...

U.S. Agencies Highlight Ongoing Ransomware Attacks by Iranian ...

U.S. cybersecurity and intelligence agencies have issued a warning about the activities of an Iranian hacking group known as Pioneer Kitten, ...

Vulnerabilities Archives - Page 464 of 627 - SecurityWeek

Enterprise software maker Micro Focus released security updates for its Filr product last week to patch several critical vulnerabilities discovered by ...