WinRAR Zero-Day Actively Exploited

This article discusses a critical vulnerability in WinRAR that has been actively exploited, resulting in malware infections. Product and affected versions: WinRAR, specifically versions prior to 6.23. CEV This vulnerability…

Comments Off on WinRAR Zero-Day Actively Exploited

Cybercriminals capitalize on Magento’s vulnerability to pilfer payment information from online retail platforms

Product and affected versions The vulnerability affects Magento e-commerce websites. The specific affected versions are not mentioned in the provided text. Severity and CVE ID The severity of this vulnerability…

Comments Off on Cybercriminals capitalize on Magento’s vulnerability to pilfer payment information from online retail platforms

A recently discovered flaw in New Terrapin could potentially allow attackers to downgrade SSH protocol security

Product and Affected Versions The vulnerability, named Terrapin (CVE-2023-48795, CVSS score: 5.9), impacts a wide range of SSH client and server implementations, including but not limited to OpenSSH, Paramiko, PuTTY,…

Comments Off on A recently discovered flaw in New Terrapin could potentially allow attackers to downgrade SSH protocol security