VTA-00431 – OpenSSH Releases Patch for New Pre-Auth Double Free Vulnerability OpenSSH has released version 9.2 to address security bugs, including a memory safety vulnerability in the OpenSSH server (sshd). The vulnerability, tracked as CVE-2023-25136, has been classified as a …
CODEREDVTA
Vulnerability and Threat Advisories
“Security rules and techniques that helping you stay ahead of cyber threats”
New shc-based Linux Malware Targeting Systems with Cryptocurrency Miner
VTA-00430 – New shc-based Linux Malware Targeting Systems with Cryptocurrency Miner A new Linux malware developed using the shell script compiler (shc) has been observed deploying a cryptocurrency miner on compromised systems. It is presumed that after successful authentication through …
Empowering the Cybersecurity and Cloud Security Industry Together
Empowering the Cybersecurity and Cloud Security Industry Together We are thrilled and humbled to have Cyber100 Cohort 3 committee members (NACSA, MDEC, MAMPU, MCMC, MyDigital EPU KKOMM) to visit our office yesterday. We did not see this visit as sales …
APT Actor Spread AppleJeus Malware Disguised as Cryptocurrency Apps
VTA-00429 – APT Actor Spread AppleJeus Malware Disguised as Cryptocurrency Apps The Lazarus Group threat actor has been observed leveraging fake cryptocurrency apps as a lure to deliver a previously undocumented version of the AppleJeus malware, according to new findings …
New Chrome Browser Update to Patch Yet Another Zero-Day Vulnerability (CVE-2022-4262)
VTA-00428 – New Chrome Browser Update to Patch Yet Another Zero-Day Vulnerability (CVE-2022-4262) Recently, Google has released an out-of-band security update to fix a new actively exploited zero-day flaw in its Chrome web browser. The high-severity flaw, tracked as CVE-2022-4262, concerns …