Automated Cloud Service Abuse Enables TeamPCP’s Large‑Scale Ransomware Campaign Credited by Freepik VTA-004562 – AI Enhanced Campaign Breaches 600+ FortiGate Firewalls Without Zero-Day Amazon Threat Intelligence has uncovered a Russian-speaking, financially motivated threat actor that leveraged commercial generative AI services …
CODEREDVTA
Vulnerability and Threat Advisories
“Security rules and techniques that helping you stay ahead of cyber threats”
Automated Cloud Service Abuse Enables TeamPCP’s Large‑Scale Ransomware Campaign
Automated Cloud Service Abuse Enables TeamPCP’s Large‑Scale Ransomware Campaign Credited by Freepik VTA-004561 – Automated Cloud Service Abuse Enables TeamPCP’s Large‑Scale Ransomware Campaign TeamPCP, also known as PCPcat or ShellForce, is a cybercrime group that launched a massive worm-like campaign …
Critical SQL Injection Flaw Exposes FortiClient EMS to Remote Code Execution
Critical SQL Injection Flaw Exposes FortiClient EMS to Remote Code Execution Credited by Freepik VTA-004560 – Critical SQL Injection Flaw Exposes FortiClient EMS to Remote Code Execution Fortinet recently published a PSIRT advisory (FG-IR-25-1142) highlighting a critical security flaw in FortiClient EMS, the enterprise management server …
Malicious dYdX Libraries Used to Steal Crypto Wallets via npm and PyPI
Malicious dYdX Libraries Used to Steal Crypto Wallets via npm and PyPI Credited by Freepik VTA-004559 – Malicious dYdX Libraries Used to Steal Crypto Wallets via npm and PyPI A sophisticated supply chain attack targeting dYdX, a popular decentralized finance (DeFi) …
Malicious Bot Skills Signal a Shift in Crypto-Focused Attacks
Malicious Bot Skills Signal a Shift in Crypto-Focused Attacks Credited by Freepik VTA-004558 – Malicious Bot Skills Signal a Shift in Crypto-Focused Attacks ClawHavoc represents a sophisticated supply chain attack targeting the ClawHub marketplace for OpenClaw AI bots, where attackers uploaded 341 …