Hackers Can ‘Pre-Hijack’ Online Accounts Before They Are Created by Users

Threat actors could gain access to users’ online accounts by leveraging a new type of technique that involves pre-hijacking an account before it’s actually registered by the victim.
“Account pre-hijacking” is a new class of attacks that can be used to … Continue reading Hackers Can ‘Pre-Hijack’ Online Accounts Before They Are Created by Users

Cloud Data Security Firm Dig Emerges From Stealth With $11 Million in Funding

Israel-based cloud data security company Dig Security on Thursday announced emerging from stealth mode with $11 million in seed funding.
Dig’s seed funding round was led by Israeli startup foundry Team8, with participation from CrowdStrike’s Falcon Fun… Continue reading Cloud Data Security Firm Dig Emerges From Stealth With $11 Million in Funding

CISA: Hackers Will Quickly Start Exploiting Newly Patched VMware Vulnerabilities

The US Cybersecurity and Infrastructure Security Agency (CISA) has warned organizations about two actively exploited VMware product vulnerabilities, and the agency believes two other freshly patched flaws will also be exploited soon.
read more

Continue reading CISA: Hackers Will Quickly Start Exploiting Newly Patched VMware Vulnerabilities

Over 380,000 Kubernetes API Servers Exposed to Internet: Shadowserver

The Shadowserver Foundation has started scanning the internet for Kubernetes API servers and found roughly 380,000 that allow some form of access.
ShadowServer is conducting daily scans of the IPv4 space on ports 443 and 6443, looking for IP addresses … Continue reading Over 380,000 Kubernetes API Servers Exposed to Internet: Shadowserver