2021-09-22 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
A vulnerability was discovered in the Anthos Identity Service (AIS) LDAP module of Anthos clusters on VMware versions 1.8 and 1.8.1 where a seed key used in generating keys is predictable. With this vulnerability, an authenticated user could add arbitrary claims and escalate privileges indefinitely.
P0
2021-09-22 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Upon blocking a request, GCP Org policy constraints were logging the deny logs in Principal''s project and the blocking project. An attacker could use those logs to exfiltrate any data, by making request from a Principal they own from a defender project.
P0
2021-09-21 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
If a user with AWS WorkSpaces 3.0.10-3.1.8 installed visits a page in their web browser with attacker controlled content, the attacker can get zero click RCE under common circumstances.
P15
2021-09-21 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn about the top four Common Vulnerabilities and Exposures (CVEs) attackers are exploiting—and how you can defend against them.
P0
2021-09-17 14:30 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Scammers attack users in Middle Eastern countries
P0
2021-09-17 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Convincing a victim to click a specially crafted link would allow the attacker to bypass the Identity-Aware Proxy (a core component of BeyondCorp).
P0
2021-09-16 14:26 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Phishers take an approach to bypass security controls never seen in the country
P0
2021-09-14 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
In this blog, we debate which is the best approach for IT professionals to beat hackers: offensive cybersecurity or defensive cybersecurity.
P0
2021-09-13 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Azure AD users could escalate their privileges using the Log Analytics Contributor role to reach the full Subscription Contributor role.
P10
2021-09-10 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Allows an attacker with privileges in the account to share resources outside of the account even when an org policy restricts this, thus enabling them to backdoor their access.
P0
2021-09-09 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Cross-account container escape
P0
2021-09-09 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Huntress is monitoring a new threat against Windows OS and Microsoft Office products (CVE-2021-40444). The MSHTML engine is vulnerable to arbitrary code execution.
P5
2021-09-07 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
In this blog, read along as we investigate a malicious foothold and decode the payload step by step.
P0
2021-08-26 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Azure's Cosmos DB database service was vulnerable to remote account takeover. Any Azure user could gain full admin access to other customers' Cosmos DB instances without authorization. The vulnerability had a trivial exploit that doesn't require any previous access to the target environment.
P0
2021-08-26 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
We clarify the differences between the ProxyShell (August 2021) and the ProxyLogon (March 2021) exploits impacting Microsoft Exchange on-premises servers.
P0
2021-08-24 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Dive into a cyber threat analysis that details a sneaky enabler of a targeted cyberattack: persistence.
P0
2021-08-19 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Attackers are scanning for vulnerable Microsoft Exchange servers and abusing the latest line of Exchange vulnerabilities that were patched in early 2021.
P0
2021-08-17 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Join us on a threat analysis journey as we discover a very shady Python—and a very friendly RAT.
P0
2021-08-13 14:33 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
How we make Tailored Threat Intelligence
P0
2021-08-11 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
What can we learn from studying cybercriminals? Here’s a brief history of how hackers are evolving their tradecraft and attack tactics.
P0
2021-08-06 14:36 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
AWC joins illicit carding business by offering 1 Mln compromised cards for free
P0
2021-08-06 07:28 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
The story behind the BlackMatter ransomware strain
P15
2021-08-05 12:39 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
The key to success for Campo Loader, Hancitor, IcedID, and QBot
P0
2021-08-05 00:00 UTC
Other
Cloud Vuln DB · indexed 2026-09-07 17:30 UTC
Lightsail object storage allows the creation of access keys which were logged to CloudTrail (both access key and secret key)
P0
2021-08-05 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
Learn about the costs of cybersecurity—and the risks of not having the right security stack—in this blog.
P0
2021-08-03 07:33 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Chinese APTs attack Russia
P0
2021-07-29 07:42 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Dive into Breached DB section
P0
2021-07-28 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
The Huntress team recaps what happened during the Kaseya VSA supply chain attack—and what we can learn from it.
P0
2021-07-26 00:00 UTC
Security Journalism
Huntress · indexed 2026-09-07 17:30 UTC
We teamed up with our partners at Magna5 to talk about providing real-time prevention, detection and response.
P0
2021-07-22 07:45 UTC
Other
Group-IB · indexed 2026-09-07 17:30 UTC
Fraud-as-a-Service operation targeting Dutch residents
P0