SecureTeam is a UK cybersecurity practice specialising in Penetration Testing, Information Assurance, Security Hardening, Incident Response & Forensics
@BHinfoSecurity Hey people 👋🏻 We’re a team of cyber security researchers and penetration testers over in the UK. We often share news and articles that might be of interest to the community.
Check us out:
https://t.co/btv22TYAIA
In recent months, a notable wave of cyber-attacks has swept across Europe, orchestrated by the cybercriminal group known as Hive0145. #cybercrime#malware#phishing
https://t.co/2a6JGzvX2b
Palo Alto Networks has issued an urgent advisory to its customers, highlighting a potential remote code execution (RCE) vulnerability within the PAN-OS management interface. #paloalto#patching#vulnerabilitymanagement
https://t.co/jGovsJj6hh
The CVE-2024-38812 vulnerability is a critical flaw that exposes VMware vCenter Servers to serious security risks, including remote code execution and full system compromise. #patching#vmware#vulnerabilitymanagement
https://t.co/fk1L65tguE
The recently disclosed vulnerability, CVE-2024-38094, in Microsoft SharePoint presents a significant threat to organisations by allowing attackers to execute remote code on compromised servers. #microsoft#patching#sharepoint#vulnerabilitymanagement
https://t.co/Jlmpbevq9z
Nation-state cyberattacks on critical infrastructure are becoming increasingly sophisticated and destructive, as highlighted by recent reports. #cybersecuritynews#nationstate
https://t.co/KiIawBzWXq
Apple has recently addressed a significant vulnerability in its VoiceOver feature that raised privacy concerns for iPhone and iPad users. #Apple#cybersecuritynews#vulnerabilitymanagement
https://t.co/VFyREcMxGo
A newly discovered rootkit known as "Snapekit" has emerged, posing a significant risk to users of Arch Linux systems, particularly those running the 6.10.2-arch1-1 kernel. #Linux#malware#rootkit
https://t.co/fH6GnYr41a
In September 2024, NVIDIA disclosed a critical security flaw, CVE-2024-0132, affecting its NVIDIA Container Toolkit. #cybersecuritynews
https://t.co/LahG3tKzLk
Recently, IASME has introduced their latest Willow question set for the NCSC Cyber Essentials Self-Assessment Certification, which will replace the current (Montpelier) questions on the 28th April, 2025. #cyberessentials#iasme
https://t.co/ZEPx09NMY7
Meta, the parent company of Facebook and Instagram, has been hit with a significant €91 million (£79 million) fine by Ireland’s Data Protection Commission (DPC) after an investigation revealed serious lapses in the company’s handling of user data.
https://t.co/75p2qf5SOP
Multiple stack-based buffer overflows have been identified in Ivanti Avalanche, tracked as a single vulnerability with a critical severity rating and CVSS base score of 9.8/10 #cybercrime#cybersecuritynews#patching#vulnerabilitymanagement
https://t.co/zMjAR2FX4A
Highly targeted phishing attacks have been carried out by the threat actor Midnight Blizzard, previously known as NOBELIUM, via Microsoft Teams #credentialstuffing#cybersecuritynews#microsoft#phishing
https://t.co/94sgIMrM5E
LinkedIn accounts have been targeted by attackers in hacking events that have led to users being locked out of their own accounts by LinkedIn, and unable to recover them through LinkedIn support #credentialstuffing#cybercrime#cybersecuritynews
https://t.co/3hmhrf1gZE
A Defense-In-Depth Office update has been released by Microsoft as a part of the Patch Tuesday updates made available this week to fix an actively exploited remote code execution flaw #cybersecuritynews#microsoft#patching#vulnerabilitymanagement
https://t.co/mXy8Jxt0pQ
A critical severity flaw in PaperCut NG and PaperCut MF print management applications that can allow unauthenticated attackers to perform RCE on vulnerable Windows servers #cybercrime#cybersecuritynews#patching#vulnerabilitymanagement
https://t.co/ExADSxXeti
Canon Inkjet printers have been found to retain sensitive Wi-Fi information after the usual wipe that is performed in the initialisation process #cybercrime#cybersecuritynews#securitybreach#wireless
https://t.co/0zYHw2yOr5