Author Archives: [email protected]

Windows 11 will soon let you have more control over your PC’s camera, new beta update reveals

New camera settings offer “Multi-app” and “Basic” for advanced control and troubleshooting, spotted in Windows 11 Dev channel’s KB5041872. The post Windows 11 will soon let you have more control over your PC’s camera, new beta update reveals appeared first on MSPoweruser.

Return of the RCE: Addressing the regreSSHion Vulnerability – CVE-2024-6378

Originally published by Pentera. A Regrettable Resurgence On July 1, 2024, the Qualys Threat Research Unit (TRU) published their discovery of an unauthenticated remote code execution (RCE) vulnerability in OpenSSH, a tool for secure remote connectivity using the Secure Shell (SSH) protocol. The bug, assigned CVE-2024-6387, is a regression of a previously patched vulnerability, impacting […]

Hackers Exploit PHP Vulnerability to Deploy Stealthy Msupedge Backdoor

A previously undocumented backdoor named Msupedge has been put to use against a cyber attack targeting an unnamed university in Taiwan. “The most notable feature of this backdoor is that it communicates with a command-and-control (C&C) server via DNS traffic,” the Symantec Threat Hunter Team, part of Broadcom, said in a report shared with The […]

Anatomy of an Attack

In today’s rapidly evolving cyber threat landscape, organizations face increasingly sophisticated attacks targeting their applications. Understanding these threats and the technologies designed to combat them is crucial. This article delves into the mechanics of a common application attack, using the infamous Log4Shell vulnerability as an example, and demonstrates how Application Detection and

Betty Blocks Review: How Good is This Low-Code App Builder?

Developing apps and software often requires expensive outsourcing or skilled internal teams. In this Betty Blocks review, I tested this low-code cloud-based platform to see how it can streamline the process and enable your business to create apps and webpages without requiring coding knowledge. But how does it compare to other low-code and no-code solutions […]

Researchers Uncover TLS Bootstrap Attack on Azure Kubernetes Clusters

Cybersecurity researchers have disclosed a security flaw impacting Microsoft Azure Kubernetes Services that, if successfully exploited, could allow an attacker to escalate their privileges and access credentials for services used by the cluster. “An attacker with command execution in a Pod running within an affected Azure Kubernetes Services cluster could download the configuration used to