You can now find Cyber Kendra on Google News!

Vulnerability

Microsoft Fixes Six Zero-days in December Security Update

Recently, Microsoft released security patches for December, which repaired 67 CVE vulnerabilities for Microsoft products, including 7 serious vulnera…

Log4Shell - 3rd Vulnerability on Apache Log4j Utility Found

Update: Today Apache team has released another security update for log4j 2.16.0 which fixes the DoS vulnerability. The DoS flaw in log4j 2.16.0 is be…

VMware Patch Critical Authentication Bypass Vulnerability

VMware released the security advisory to address a critical authentication bypass security flaw, tracked as CVE-2022-31656, impacting local domain us…

Worst Apache Log4j RCE Zero day Dropped on Internet

Second Log4Shell vulnerability has been discovered so we recommend everyone to once again update the Log4j package to the latest Log4j 2.16 (at the…

SpringShell: Spring Core RCE 0-day Vulnerability

Update as of 31st March: Spring has Confirmed the RCE in Spring Framework . The team has just published the statement along with the mitigation guide…

ebay Got Hacked, Blackout Day for eBay

Till now may eBay have not overcome with the latest cyber attacks that it suffered last two days before and now another bad day arrives for eBay I…

Actively Exploited Libvpx Flaw Affects both Firefox and Chrome Browsers

Google has released emergency security updates to patch the fifth Chrome zero-day vulnerability that has been exploited in attacks since the beginnin…

VMware Patch Critical RCE Affecting Workspace ONE Access and Identity Manager

VMware released a critical advisory addressing security vulnerabilities found and resolved in VMware’s Workspace ONE Access, VMware Identity Manager…

New Log4j RCE Vulnerability Discovered in Apache Logging Library

It was the big alarm throughout the internet when a critical remote code execution bug a.k.a Log4Shell (CVE-2021-44228) in the Apache Log4j logging l…

[CVE-2024-3400] Palo Alto Networks Firewall Vulnerability Exploited in the Wild

In a startling revelation, cybersecurity firms Volexity and watchTowr have reported that a critical zero-day vulnerability in Palo Alto Networks Glob…

Apache Fix Two Severe Vulnerability in Apache HTTP Server [Update Now]

After the critical Remote Code Execution vulnerability found in the Apache Log4j logging library, another High severity vulnerability was patched by …

Log4j RCE Vulnerability Exploited for Ransomware and Malware

Cybercriminals are actively looking for and exploiting the critical Log4Shell vulnerability ( CVE-2021-44228) in the Java-based Apache Log4j loggi…