A Denial of Service (DoS) vulnerability exists in CLFS.sys, exploitable by authenticated low-privilege users. Successful exploitation triggers a Blue Screen of Death (BSOD) via...
Researchers have uncovered a novel phishing-as-a-service (PhaaS) platform named "ONNX Store" that specifically targets Microsoft 365 credentials, particularly those belonging to employees within financial...
An open directory analysis report identified infrastructure linked to PoshC2 command and control activity, where the actor used batch scripts and malware to compromise...
Microsoft researchers discovered multiple vulnerabilities in OpenVPN, allowing attackers to chain remote code execution and local privilege escalation attacks on various platforms.
These vulnerabilities, affecting...
Researchers identified a new attack vector, "Shadow Resources," enabling resource squatting through predictable S3 bucket naming conventions.
By leveraging "Bucket Monopoly," an attacker can significantly...