Cyber News

    Dashboard / Cyber News

    ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions
    in
    [email protected] (The Hacker News)-11 days ago

    ValleyRAT Backdoor Hides in Signed Adware That Users Add to Antivirus Exclusions

    The threat actor known as Silver Fox has been observed distributing the ValleyRAT backdoor disguised as a signed Chinese adware application, running the malware under a trusted process to slip past users who add such software to their antivirus exclusions. Russian cybersecurity vendor Kaspersky said the attackers built the disguise around QN Wallpaper, a genuine Chinese desktop-wallpaper tool
    Multiple Vulnerabilities in Oracle Products Could Allow for Arbitrary Code Execution
    -23 days ago

    Multiple Vulnerabilities in Oracle Products Could Allow for Arbitrary Code Execution

    Multiple vulnerabilities have been discovered in Oracle products, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could result in an attacker gaining the same privileges as the logged-on user. Depending on the privileges associated with the user, an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

    Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution
    -30 days ago

    Multiple Vulnerabilities in Google Chrome Could Allow for Arbitrary Code Execution

    Multiple vulnerabilities have been discovered in Google Chrome, the most severe of which could allow for arbitrary code execution. Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

    Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution
    -2026-08-11

    Multiple Vulnerabilities in Adobe Products Could Allow for Arbitrary Code Execution

    Multiple vulnerabilities have been discovered in Adobe products, the most severe of which could allow for arbitrary code execution.

    • Adobe ColdFusion is a commercial rapid web application development platform and application server.
    • Adobe Commerce is an enterprise-level e-commerce platform built on the proven technology of Magento.
    • Adobe Lightroom is a popular cloud-based image organization and photo-editing software developed by Adobe.
    • Adobe Content Credentials SDK is a software tool kit that lets developers add secure, tamper-evident provenance metadata to digital files.
    • Adobe Campaign Classic is an enterprise-grade marketing automation and campaign management platform.

    Successful exploitation of the most severe of these vulnerabilities could allow for arbitrary code execution in the context of the logged on user. Depending on the privileges associated with the user, an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

    Follow-Up Report of the December 2025 Energy Sector Incident
    CE
    CERT Polska-2026-08-08

    Follow-Up Report of the December 2025 Energy Sector Incident

    During the attacks against Poland's energy sector in late 2025, a second combined heat and power plant was also affected. We are publishing a report detailing an investigation that lasted more than three months and led to the discovery of a previously unobserved attack vector involving a private APN.