Third Party Risk Assessment

Third Party Risk Assessment
ZyXEL Routers Backdoor Flaw Exploit Vulnerability

ZyXEL routers showed signs of a backdoor credential

January 11, 2023

A researcher found a backdoor credential within ZyXEL routers. Based…

Authentication Bypass Flaw Vulnerability Discovered Ghost CMS

An authentication bypass flaw is discovered on Ghost CMS

January 5, 2023

The Ghost CMS newsletter subscription system could enable external users…

Malicious Code Python Package Data Stealer Developers

Malicious Python package steals data from developers

January 4, 2023

Hackers have developed a compromised Python package on PyPI dubbed…

Open-Source Repositories Phishing Malicious Packages Third Party Risk Cyber Threat PyPi NuGet NPM

Open-source repositories overflow with phishing packages

December 29, 2022

Open-source repositories such as PyPi, NuGet, and NPM were flooded…

Flaw Vulnerability IoT Devices Zerobot Botnet Malware TOTOLINK Hikvision Zyxel F5

Flaws within IoT devices exploited by the Zerobot botnet

December 22, 2022

The Zerobot botnet is the latest inclusion to the long…

Hackers PRoot Open Source Linux

Hackers use the PRoot open-source tool to target Linux

December 21, 2022

Threat actors are currently exploiting the PRoot open-source tool to…

Atlassian Suspected Flaw Vulnerability Third Party Risk Session Cookies CloudSEK

Atlassian refutes a suspected flaw involving session cookies

December 19, 2022

The recent security incident on a CloudSEK employee’s session cookies…

Redis Remote Dictionary Service Servers Redigo Malware Cyberattack Campaign

Redis servers targeted in a recent Redigo malware campaign

December 13, 2022

Vulnerable Redis servers are at risk of an ongoing attack…

Millions User Data Exposed Leaked Algolia API Security Keys

Millions of user data are exposed due to leaked Algolia API keys

December 6, 2022

Thousands of applications were spotted leaking Algolia API keys and…

Malicious App SearchBlox Browser Extension Roblox Gaming Google Chrome

Malicious SearchBlox extension installed by Roblox players

December 6, 2022

The SearchBlox extension is a malicious browser extension installed by…