July 2, 2024, 4:48 a.m. | info@thehackernews.com (The Hacker News)

The Hacker News thehackernews.com

A China-nexus cyber espionage group named Velvet Ant has been observed exploiting a zero-day flaw in Cisco NX-OS Software used in its switches to deliver malware.
The vulnerability, tracked as CVE-2024-20399 (CVSS score: 6.0), concerns a case of command injection that allows an authenticated, local attacker to execute arbitrary commands as root on the underlying operating system of an affected

ant attacker case china chinese chinese hackers cisco cisco nx-os cisco switches command command injection commands cve cve-2024 cvss cvss score cyber cyber espionage deliver malware espionage exploiting flaw hackers injection local malware nexus nx-os score software switches velvet ant vulnerability zero-day zero-day flaw

Software Engineer

@ Booz Allen Hamilton | USA, VA, McLean (8283 Greensboro Dr, Hamilton)

SOC Level 1 Engineer

@ Groupon | Remote - India

Senior Technology Auditor (Continuous Process Monitoring)

@ CNA Insurance | US- IL40- Chicago-151N Frankln

Sr. Director, Tech Process Management (ES Risk)

@ Capital One | McLean, VA

AVP, Pre-Sales and Professional Services for Group Benefits & Affinity

@ Manulife | CAN, Ontario, Toronto, 250 Bloor Street East

Software Engineer III

@ Walmart | IN KA BANGALORE Home Office PW II