Cyber Attack on Exposes Supply Chain Vulnerabilities

A recent cyber attack targeting telematics provider Microlise has highlighted critical vulnerabilities in supply chain security, disrupting tracking services for prominent clients such as DHL and Serco and exposing limited employee data. The breach, disclosed on October 31, led to a significant 16% drop in Microlise’s stock value and raised concerns about the broader implications […]
Android zero-day vulnerabilities were used in targeted attacks – now fixed by Google

In the current threat landscape, mobile devices have become prime targets for cyber criminals, with a particular focus on Android vulnerabilities. Given Google’s recent security update addressing two critical Android zero-day vulnerabilities, businesses are advised to ensure that both personal and work-related Android devices used by employees are regularly backed up and updated. Implementing these […]
Google: 70% of exploited flaws disclosed in 2023 were zero-days

In 2023, Google Mandiant reported a sharp rise in cybercriminals being able to exploit zero-day vulnerabilities, underscoring a significant shift in threat actor capabilities. According to Mandiant and Bleeping Computer, 70% of the 138 actively exploited vulnerabilities this year were zero-day flaws, meaning they were exploited before vendors could patch them. This trend demonstrates an […]
Unknown Threat Actors Exploit Roundcube Webmail Vulnerability in Phishing Campaign

Cyber criminals continue to find new ways to exploit vulnerabilities in commonly used software. Recently, a flaw in Roundcube Webmail (CVE-2024-37383) was leveraged in a phishing campaign, potentially compromising user credentials. Though the email vulnerability has been patched, the attack serves as a reminder of the importance of timely updates and proactive cyber security measures. […]