VTA-00445 – Malware Campaign Exploiting Microsoft Office Vulnerabilities to Drops LokiBot FortiGuard Labs, a cybersecurity research team, has uncovered a malware campaign that exploits vulnerabilities, namely CVE-2021-40444 and CVE-2022-30190 (Follina), in Microsoft Office documents. This campaign aims to distribute LokiBot …
CODEREDVTA
Vulnerability and Threat Advisories
“Security rules and techniques that helping you stay ahead of cyber threats”
SCARLETEEL 2.0: Advanced Cryptojacking Campaign Targets AWS Fargate
VTA-00444 – SCARLETEEL 2.0: Advanced Cryptojacking Campaign Targets AWS Fargate SCARLETEEL was first discovered in February 2023 and involves a sophisticated attack chain that results in the theft of proprietary data from AWS infrastructure and the deployment of cryptocurrency miners to …
Urgent Patch Released by Apple to Address Zero-Day Vulnerability Affecting iOS, iPadOS, macOS, and Safari
VTA-00443 – MalwareUrgent Patch Released by Apple to Address Zero-Day Vulnerability Affecting iOS, iPadOS, macOS, and Safari Apple has released Rapid Security Response updates for iOS, iPadOS, macOS, and Safari web browser to address a zero-day vulnerability, labeled as CVE-2023-37450, …
North Korean Kimsuky Hackers Strike Again with Advanced Reconnaissance Malware
VTA-00442 – North Korean Kimsuky Hackers Strike Again with Advanced Reconnaissance Malware SentinelLabs recently observed an ongoing campaign carried out by Kimsuky, a North Korean APT group. The targets of this campaign include North Korea-focused information services, human rights activists, …
Microsoft March Patch : 80 Security Vulnerabilities Fixed, Including Two Actively Exploited Vulnerabilities
VTA-00441 – Microsoft March Patch : 80 Security Vulnerabilities Fixed, Including Two Actively Exploited Vulnerabilities A total of 80 security flaws, including two actively exploited vulnerabilities, are set to be fixed in Microsoft’s Patch Tuesday update for March 2023. Out …