LR pixel

XZ Utils Supply Chain Attack (CVE-2024-3094)

What is the vulnerability/attack? A malicious code was discovered embedded in the XZ Utils which is a data compression software included in major Linux distributions. This vulnerability tracked under CVE-2024-3094 is a result of a supply chain attack on the versions...

Kimsuky Malware Attack

What is the Kimsuky Malware Attack? Kimsuky, officially known as the Kim Suky Group, is a cyber-espionage group linked to North Korea. The group has been active since at least 2012 and is primarily focused on gathering intelligence targeting South Korean government...

Jenkins Arbitrary File Read Vulnerability (CVE-2024-23897)

What is the Vulnerability? Cyber threat actors are actively targeting Jenkins, a Java-based open-source automation server widely used by application developers. The critical vulnerability tracked as CVE-2024-23897 could enable remote code execution (RCE) potentially...