Newsletter

Indian APT Group Targets Pakistan with Spyware and Romance Scam Strategy

Another attack was discovered between India and Pakistan, who are close friends. This time Indian hackers targeted individuals and organizations in Pakistan. Indian hackers, who mainly approached the romance scam strategy, even fooled Google Play. [보안뉴스 문가용 기자] Patchwork, an Indian APT group, was recently discovered to be distributing six malicious apps through the official […]

Root Access Vulnerability Discovered in GNU C Library of Linux Ecosystem

Summary: According to the security blog Security Affairs, a root access vulnerability has been discovered in the GNU C library (glibc) of the Linux ecosystem. According to security firm Qualys, the vulnerability is called CVE-2023-6246 and was discovered in several Linux distributions. It is a type of heap buffer overflow vulnerability, and if exploited, it […]

Security Vulnerability in Opera: MyFlaw and MyFlow Feature Detected and Patched

Summary: According to Hacker News, a foreign security news outlet, a security vulnerability has been discovered in Opera, a popular web browser. It has been analyzed that if the exploit is successful, the attacker will be able to execute any file on the victim’s operating system. This vulnerability was named MyFlaw. This is because the […]

Apple Introduces New Guidelines to Strengthen User Privacy Safeguards in API Usage

Apple Introduces Stronger User Privacy Measures for API Usage In a move to bolster user privacy safeguards, Apple has recently released new guidelines for developers. These guidelines emphasize the need for a clear and detailed explanation of the purpose of API usage in app development. Although the announcement was made at a developer conference last […]

Genbleed Vulnerability Puts Many Architectures at Risk: Urgent Microcode Update Required

Multiple Architectures at Risk from Genbleed Vulnerability, Urgent Microcode Update Required Multiple computer architectures are facing a potential security threat due to the recently discovered Genbleed vulnerability in AMD’s Zen2 series CPUs, as reported by renowned security expert Tarvis Ormandy. Exploiting this vulnerability could result in the compromise of sensitive data. The vulnerability, identified as […]

Genbleed Vulnerability: Threat to Multiple Architectures Requires Microcode Update

Multiple Architectures at Risk from Genbleed Vulnerability: Urgent Microcode Update Required Security experts have identified a new vulnerability in AMD’s Zen2 series CPUs, posing a significant threat to various architectures. If exploited, this flaw, known as CVE-2023-20593, could result in the unauthorized access and theft of sensitive data, warns prominent security analyst Tarvis Ormandy. Further […]

Increasing Docker Hub Users Uncover Gradual Vulnerabilities in Repositories

As the number of Docker Hub users continues to rise, so does the exposure of vulnerabilities. Tens of thousands of images registered on Docker Hub contain confidential and sensitive information, according to a report by Bleeping Computer, a renowned foreign security press. This in turn significantly widens the attack surface, posing a risk to various […]

KAI Releases First Sustainability Report, Highlighting Achievements in ESG Management

Korea Aerospace Industries (KAI) has recently released its inaugural ‘Sustainability Report’, aiming to enhance transparency and foster effective communication regarding its sustainability management practices and accomplishments. As a prominent player in the aerospace industry of Korea, KAI’s report encompasses a comprehensive three-year evaluation of its environmental indices with regards to combating global climate change. Additionally, […]