Threat Advisories:
Highlights of Our CISO Dinner
Upgrading struggling vulnerability management programs to Threat Exposure Management, with Host, CISO Al Lindseth formerly from Plains All American Pipeline and PWC - 6 minute podcast
0:00
0:00
👥 Play Count: Loading...

Threat Advisories

Detailed information and guidance on threats and vulnerabilities, focusing on its characteristics, impact, and remediation steps, released daily and weekly to provide actionable intelligence and aid in rapid response and mitigation efforts.

Strengthen Your Defenses With the Latest Intelligence

Threat Level – Red | Vulnerability Report
Tinyproxy Vulnerability Exposes Hosts to Remote Code Execution
CVE-2023-49606 a critical use-after-free vulnerability found in Tinyproxy’s HTTP Connection Headers parsing May 8, 2024
Threat Level – Red | Vulnerability Report
APT42’s Operations Employ “Nicecurl” and “Tamecat” Malwares
APT42 has been observed targeting entities in both the Middle East and May 7, 2024
Threat Level – Red | Vulnerability Report
Cybercriminals Forge Alliances via Compromised Routers
APT28 threat actors utilized compromised EdgeRouters to execute covert cyber operations, repurposing May 3, 2024
Threat Level – Amber | Vulnerability Report
Cuckoo Malware Operates as Both an Infostealer and Spyware
A newly discovered malware threat for macOS, displaying traits of both an May 3, 2024
Threat Level – Red | Vulnerability Report
Goldoon Botnet Exploits Longstanding D-Link Vulnerability
A recently surfaced Goldoon botnet is exploiting a vulnerability in D-Link systems May 3, 2024
Threat Level – Red | Vulnerability Report
The Enigmatic ‘Muddling Meerkat’ Poses a Nation-State DNS Puzzle
A newly identified threat actor, dubbed “Muddling Meerkat,” associated with the People’s Republic of May 1, 2024
Threat Level – Red | Vulnerability Report
Akira Ransomware Nets $42 Million from 250+ Victims
The Akira ransomware group has become notorious for its malicious activities, having May 1, 2024
Threat Level – Red | Vulnerability Report
Active Targeting of WP-Automatic Plugin Flaw Raises Concerns for Site Takeover
The critical SQL Injection vulnerability (CVE-2024-27956) in the WP-Automatic plugin for WordPress April 29, 2024
1 99 100 101 215

HiveForce Labs Research At Your Fingertips

Stay informed with HiveForce Labs as they provide comprehensive insights into the latest vulnerabilities, threats, and threat actor activities.

Subscribe below to receive in-depth weekly and monthly updates, along with daily and weekly advisories designed to help you proactively manage and mitigate cybersecurity risks.

Subscribe Here