Critical Kubernetes Image Builder Vulnerability Exposes Nodes to Root Access Risk – OfficialSarkar

Critical Kubernetes Image Builder Vulnerability Exposes Nodes to Root Access Risk – OfficialSarkar

Oct 17, 2024Ravie LakshmananVulnerability / Kubernetes A critical security flaw has been disclosed in the Kubernetes Image Builder that, if successfully exploited, could be abused to gain root access under certain circumstances. The vulnerability, tracked as CVE-2024-9486 (CVSS score: 9.8), has been addressed in version 0.1.38. The project maintainers acknowledged Nicolai Rybnikar for discovering and…

UPPSC Various Post Recruitment 2024 for 109 Post Online Form [Career]

Uttar Pradesh Public Service Commission (UPPSC) has released the notification for the recruitment of 109 Registrar, Assistant Architect, Reader, Professor, Inspector and other posts. All interested and eligible candidates who want to apply for this recruitment can read all the information related to the recruitment given below and the link to apply is given in…

UKPSC Lecturer Online Form 2024 [Career]

Uttarakhand Public Service Commission (UKPSC) has released the notification for the recruitment of 614 Lecturers through Uttarakhand Special Subordinate Education (Lecturer Cadre ‘Group-C’) Service (General Branch and Women Branch) Examination-2024. All interested and eligible candidates who want to apply for this recruitment can read all information related to recruitment given below and link to apply…

Hackers Abuse EDRSilencer Tool to Bypass Security and Hide Malicious Activity – OfficialSarkar

Oct 16, 2024Ravie LakshmananEndpoint Security / Malware Threat actors are attempting to abuse the open-source EDRSilencer tool as part of efforts to tamper endpoint detection and response (EDR) solutions and hide malicious activity. Trend Micro said it detected “threat actors attempting to integrate EDRSilencer in their attacks, repurposing it as a means of evading detection.”…

FIDO Alliance Drafts New Protocol to Simplify Passkey Transfers Across Different Platforms – OfficialSarkar

Oct 16, 2024Ravie LakshmananData Privacy / Passwordless The FIDO Alliance said it’s working to make passkeys and other credentials more easier to export across different providers and improve credential provider interoperability, as more than 12 billion online accounts become accessible with the passwordless sign-in method. To that end, the alliance said it has published a…

North Korean ScarCruft Exploits Windows Zero-Day to Spread RokRAT Malware – OfficialSarkar

Oct 16, 2024Ravie LakshmananZero-Day / Windows Security The North Korean threat actor known as ScarCruft has been linked to the zero-day exploitation of a now-patched security flaw in Windows to infect devices with malware known as RokRAT. The vulnerability in question is CVE-2024-38178 (CVSS score: 7.5), a memory corruption bug in the Scripting Engine that…

From Misuse to Abuse: AI Risks and Attacks – OfficialSarkar

Oct 16, 2024The Hacker NewsArtificial Intelligence / Cybercrime AI from the attacker’s perspective: See how cybercriminals are leveraging AI and exploiting its vulnerabilities to compromise systems, users, and even other AI applications Cybercriminals and AI: The Reality vs. Hype “AI will not replace humans in the near future. But humans who know how to use…

5 Techniques for Collecting Cyber Threat Intelligence – OfficialSarkar

To defend your organization against cyber threats, you need a clear picture of the current threat landscape. This means constantly expanding your knowledge about new and ongoing threats. There are many techniques analysts can use to collect crucial cyber threat intelligence. Let’s consider five that can greatly improve your threat investigations. Pivoting on С2 IP…

Astaroth Banking Malware Resurfaces in Brazil via Spear-Phishing Attack – OfficialSarkar

Oct 16, 2024Ravie LakshmananCyber Attack / Banking Trojan A new spear-phishing campaign targeting Brazil has been found delivering a banking malware called Astaroth (aka Guildma) by making use of obfuscated JavaScript to slip past security guardrails. “The spear-phishing campaign’s impact has targeted various industries, with manufacturing companies, retail firms, and government agencies being the most…

PGCIL Trainee Engineer and Supervisor Sarkari Result Online Form 2024 [Career]

Power Grid Corporation of India (PGCIL) has released the notification for the recruitment of 117 Trainee Engineer and Supervisor Posts Recruitment 2024. Online forms for this will start from 16 October 2024. For more details about vacancy you can check our Sarkari Result site. All interested and eligible candidates who want to apply for this…