#NetworkSecurity
Cisco NX-OS Zero-Day Command Injection Vulnerability Under Active Exploitation
A severe vulnerability in the Command Line Interface (CLI) of Cisco NX-OS Software is currently being actively exploited, enabling attackers to execute arbitrary commands as root on compromised devices. This zero-day flaw, identified as CVE-2024-20399, poses a significant risk to network security, particularly for organizations using Cisco’s Nexus and MDS series switches. The vulnerability stems…
Russia’s APT28 Uses GooseEgg to Exploit CVE-2022-38028
Overview of APT28’s Cyber Operations APT28, also known as Fancy Bear and Forest Blizzard, is a notorious Russian state-sponsored hacking group linked to the Russian military intelligence agency GRU, specifically Unit 26165. This group has been active for over a decade and is primarily involved in cyber espionage activities aimed at collecting intelligence to support…
Advertising