Cyble Calls for Solutions to Address Dark Web Activity Involving NVIDIA, Adobe, CUPS, and Notes

Published:

spot_img

Cyble Researchers Flag 8 High-Priority Vulnerabilities and Dark Web Exploits

Cyble researchers have been hard at work uncovering vulnerabilities in various IT systems, with a total of 19 vulnerabilities investigated in the week ending Oct.1. Among these vulnerabilities, eight were flagged as high priority, including some concerning exploits being discussed on dark web and cybercrime forums.

One notable vulnerability highlighted in Cyble’s weekly report is an OpenSSH vulnerability with 8 million exposures, as well as claimed zero days in Apple and Android systems. Threat actors were also seen discussing vulnerabilities in SolarWinds, Microsoft, Zimbra, WordPress, and Fortinet on underground forums.

The report from Cyble Research & Intelligence Labs (CRIL) identified four products with critical vulnerabilities that security teams should prioritize. These include vulnerabilities in Optigo’s ONS-S8 Spectra Aggregation Switch, NVIDIA Container Toolkit, Adobe Commerce, and Linux CUPS.

Cyble researchers also noted 10 exploits being discussed in Telegram channels and cybercrime forums, urging security teams to pay closer attention to these issues. These exploits include critical vulnerabilities in SolarWinds Web Help Desk, Microsoft Office, Apple operating systems, WordPress plugins, Zimbra Collaboration Suite, and more.

Overall, the findings from Cyble’s research highlight the ongoing threat landscape faced by organizations and the importance of staying vigilant against cyber threats. Security teams are advised to patch these vulnerabilities promptly to protect their systems from potential attacks.

spot_img

Related articles

Recent articles

The Rise of AI Forgers: Navigating New Risks in the Art Market

The Emergence of Generative AI in the Art Market As generative artificial intelligence subtly infiltrates the intricacies of the art market—impacting invoices, certificates, and ownership...

The Harsh Truth About Startup ESOPs: Lessons from Unacademy

Mumbai’s EdTech Shakeup: Unacademy’s Unsettling ESOP Shift In early September, a wave of anxiety rippled through Unacademy’s former employees. These individuals received a brief but...

U.S. Authorities Seize Domain in $28 Million Bank Fraud Bust

Major Disruption of Bank Account Takeover Fraud Operation The U.S. Department of Justice recently announced a significant crackdown on a fraudulent scheme responsible for over...

Two Chrome Extensions Secretly Steal Credentials from 170+ Websites

Malicious Google Chrome Extensions: A Deep Dive into Cybersecurity Threats Cybersecurity researchers have recently unveiled a concerning threat within the Google Chrome ecosystem—two malicious extensions...