CYBER Threat Intelligence Reports
LATEST CTIs
Alarming Exploitation of Google OAuth Endpoint in Widespread Account Hijacking
Recent cybersecurity investigations have uncovered a critical exploitation of an undocumented Google OAuth endpoint, dubbed "MultiLogin".
Read more >

Vulnerability in QNAP VioStor NVR – CVE-2023-47565
A Remotely exploitable vulnerability with low attack complexity has been disclosed in QNAP VioStor NVR, in CVE-2023-47565
Read more >

CISA Adds Six Known Exploited Vulnerabilities to Catalog
ISA has recently expanded its Known Exploited Vulnerabilities Catalog with six new vulnerabilities: CVE-2023-38203, CVE-2023-29300, CVE-2023-27524, CVE-2023-41990, CVE-2016-20017 and CVE-2023-23752
Read more >

Stealthy AsyncRAT Malware Campaign
A sophisticated malware campaign, dubbed "Stealthy AsyncRAT", has been active for at least 11 months, predominantly targeting U.S. infrastructure. The primary tool used in this…
Read more >

Apache RocketMQ Server Vulnerabilities – CVE-2023-33246 and CVE-2023-37582
Security researchers have identified a surge in cyber attacks targeting Apache RocketMQ servers. These attacks exploit critical vulnerabilities and require immediate action to remediate.
Read more >

Microsoft Counters Malware Spread by Disabling MSIX App Installer Protocol
Microsoft has taken decisive action against a rising tide of malware attacks by disabling the MSIX app installer protocol handler in its Windows operating system.…
Read more >
