NEW CARDING CHAT IN TELEGRAM

0day

  1. Man

    The World Under 0Day: The Worst Scenario of Cyberspace Has Become a Reality

    The Five Eyes Alliance is recording a historic shift in hacker tactics. The cybersecurity agencies of the Five Eyes alliance countries (the United States, the United Kingdom, Australia, Canada, and New Zealand) have warned of an increase in the use of zero-day vulnerabilities to penetrate...
  2. Man

    Silent Attack: Fortinet Hides 0day in Critical Infrastructure

    FortiManager becomes the entry point into the most sensitive systems. Fortinet has not disclosed information about the zero-day vulnerability for more than a week, despite reports that attackers are using it to execute malicious code on servers serving critical infrastructure. The company has...
  3. Man

    0Day in Samsung: how the driver puts Exynos devices at risk

    Samsung has closed a dangerous vulnerability in its devices. Samsung has released a security update to address the CVE-2024-44068 vulnerability affecting devices based on Exynos processors. The error occurred in the m2m1shot_scaler0 driver, which is used to process images and videos, such as...
  4. Friend

    CVE-2024-8190: How Ivanti missed 0day

    Why complex combinations of characters in a password are more important than ever. On September 10, 2024, Ivanti issued a security notice regarding a zero-day vulnerability in its Cloud Service Appliance (CSA) product. The bug didn't seem to be of much interest at first glance because...
  5. Friend

    0day Attack via GCP Composer: What All Developers Should Know

    Researchers have uncovered an unexpected mechanism for the spread of malicious code. Tenable has identified a serious vulnerability in Google Cloud Platform (GCP) Composer that could be used for remote code execution in real-world attacks. GCP Composer is a managed service for automating and...
  6. Friend

    CVE-2024-38217: Why could 0day not be detected in Windows for 6 years?

    Elastic Security Labs has revealed the details of the "LNK Stomping" attack. As part of its recent Patch Tuesday update, which we have already published a separate article about, Microsoft has fixed a zero-day vulnerability in the Windows Smart App Control and SmartScreen functions, which has...
  7. Friend

    0Day in Chrome Empties Crypto Wallets Worldwide

    The DPRK has found another way to earn cryptocurrency, penetrating the heart of the systems. North Korean hackers are exploiting a zero-day vulnerability in Google Chrome to gain control of systems and seize control of victims crypto assets. Microsoft experts have confirmed that the Citrine...
  8. Friend

    0day in WPS Office: How APT-C-60 Turns One File into a Digital Weapon

    Experts have revealed the mechanism of remote code execution through office software. A South Korean cyberespionage group known as APT-C-60 has recently been linked to exploiting a critical zero-day vulnerability in the WPS Office office suite. This vulnerability allows attackers to remotely...
  9. Friend

    0day at Cisco Reveals Unexpected Scale of Chinese Hacking Operations

    Hackers use security blind spots for stealthy attacks. In early 2024, the Chinese group Velvet Ant exploited a recently patched zero-day vulnerability in Cisco switches to gain control of devices and bypass threat detection systems. The CVE-2024-20399 vulnerability (CVSS score 6.7) allowed...
  10. Friend

    CVE-2024-7971: 0day allows full control over the victim's system

    The problem was the third in a row in the V8 engine since the beginning of the year. Google has released security updates for its Chrome browser to address a serious zero-day vulnerability that is currently being actively exploited by attackers in real-world attacks. The issue, designated...
  11. Friend

    0day in Office puts corporate data on the line

    The vulnerability is waiting to be fixed, but for now, corporate services and home users are under attack. Microsoft has disclosed an uncorrected zero-day vulnerability in Office that leads to unauthorized disclosure of confidential information. The bug was also presented at the Def Con...
  12. Friend

    0day Cisco IP phones threaten the security of corporate networks

    What the company offers if there are no fixes and no plans to do so. Cisco warned users about the presence of several zero-day vulnerabilities in the web management interface for Small Business SPA 300 and SPA 500 series IP phones, which have already been discontinued. Detected 0days allow an...
  13. Friend

    CVE-2024-38856: Critical 0day in Apache OFBiz opens passage for hackers

    The problem affects all versions of the program before 18.12.15. You should not delay the update. A new vulnerability has been discovered in Apache OFBiz that allows attackers to remotely execute code on vulnerable instances of the program. The issue, known as CVE-2024-38856, was rated 9.8 on...
  14. Carding Forum

    0Day at Check Point Security Gateways: What you need to know

    Learn how to keep your data safe. Recently, a serious vulnerability was discovered in the "CloudGuard Network Security" device from Check Point. This vulnerability was identified as CVE-2024-24919 and is characterized as a high-priority vulnerability. The problem lies in the fact that the...
  15. Carding Forum

    0day on Telegram: how a single click can compromise your device

    The EvilVideo exploit allowed spreading viruses. ESET researchers have discovered a zero-day exploit targeting Telegram for Android. An exploit called EvilVideo went on sale on an underground forum on June 6, 2024. Attackers used this vulnerability to spread malicious files through Telegram...
  16. Tomcat

    BreachForums sells 0day ZeroClick vulnerability for Android for $5 million

    ZeroClick - Zero click attacks allow you to access a device without any action on the part of the user, i.e. no keystrokes or mouse clicks, which can trap even the most tech-savvy people.
  17. Tomcat

    0day in Pixel: Google releases an emergency patch for its smartphones

    Update quickly before hackers pave a cyberpath to your gadget. Following Microsoft's now-familiar Patch Tuesday, Google also released updates to address 50 security vulnerabilities in its Pixel devices and warned that one of them, tracked as CVE-2024-32896, is an escalation of privilege (EoP)...
  18. Father

    CVE-2024-4947: Google fixed another 0day vulnerability in Chrome

    This is the third zero gap in a week. How many more errors will be detected? Google released updates to address nine vulnerabilities in the Chrome browser, including a new zero-day vulnerability that is actively used by attackers. The vulnerability was identified as CVE-2024-4947 and is related...
  19. Father

    PoC in the network: D-Link routers were in the hands of hackers because of 0day

    Massive attacks on vulnerable routers are now a matter of time. SSD Secure Disclosure discovered vulnerabilities in the D-Link EXO AX4800 router (DIR-X4860) that allow you to take full control of the device. Flaws were found in DIR-X4860 routers with the latest firmware version...
  20. Father

    Emergency Fix 0day: Google protected Chrome users from data disclosure

    An actively exploited vulnerability allows a hacker to gain control over the victim. Google released emergency security updates for the Chrome browser to address a zero-day vulnerability that is actively used in attacks. Vulnerability CVE-2024-4761 is related to the problem of writing data out...
Top