Tag
Once again, threat actors seek out Google search ads for top software downloads, but this time they show a lot of patience and bring on evasion tricks.
A new remote access trojan called MoonPeak has been discovered as being used by a state-sponsored North Korean threat activity cluster as part of a new campaign. Cisco Talos attributed the malicious cyber campaign to a hacking group it tracks as UAT-5394, which it said exhibits some level of tactical overlaps with a known nation-state actor codenamed Kimsuky. MoonPeak, under active development
Online Diagnostic Lab Management System version 1.0 suffers from an arbitrary file upload vulnerability.
Online Banking System version 1.0 suffers from a cross site request forgery vulnerability.
Music Gallery Site version 1.0 suffers from a cross site request forgery vulnerability.
Multi-Vendor Online Groceries Management System version 1.0 suffers from a cross site request forgery vulnerability.
Medical Center Portal version 1.0 suffers from a cross site request forgery vulnerability.
Event Registration and Attendance System version 1.0 suffers from a cross site request forgery vulnerability.
Cab Management System version 1.0 suffers from a cross site request forgery vulnerability.
Alphaware E-Commerce System version 1.0 suffers from a code injection vulnerability.