Ads

Showing posts from September, 2020Show all
Microsoft Exchange Servers Still Open to Actively Exploited Flaw
Zerologon Attacks Against Microsoft DCs Snowball in a Week
Twitter Warns Developers of API Bug That Exposed App Keys, Tokens
Bug Bounty FAQ: Top Questions, Expert Answers
FortiGate VPN Default Config Allows MitM Attacks
The Inside Story of How Signal Became the Private Messaging App for an Age of Fear and Distrust
Cisco Patch-Palooza Tackles 29 High-Severity Bugs
Zerologon Patches Roll Out Beyond Microsoft
OldGremlin Ransomware Group Bedevils Russian Orgs
Google Chrome Bugs Open Browsers to Attack
Known Citrix Workspace Bug Open to New Attack Vector
Microsoft Overhauls Patch Tuesday Security Update Guide
Firefox 81 Release Kills High-Severity Code-Execution Bugs
DHS Issues Dire Patch Warning for ‘Zerologon’
Firefox for Android Bug Allows ‘Epic Rick-Rolling’
Android Malware Bypasses 2FA And Targets Telegram, Gmail Passwords
Trump Blesses Oracle’s TikTok Deal, Delaying Potential U.S. Ban
Stubborn WooCommerce Plugin Bugs Get Third Patch
Mozi Botnet Accounts for Majority of IoT Traffic
Apple Bug Allows Code Execution on iPhone, iPad, iPod
APT41 Operatives Indicted as Sophisticated Hacking Activity Continues
Hackers Continue Cyberattacks Against Vatican, Catholic Orgs
Bluetooth Spoofing Bug Affects Billions of IoT Devices
IBM Spectrum Protect Plus Security Open to RCE
Windows Exploit Released For Microsoft ‘Zerologon’ Flaw
MFA Bypass Bugs Opened Microsoft 365 to Attack
Feds Warn Nation-State Hackers are Actively Exploiting Unpatched Microsoft Exchange, F5, VPN Bugs
TikTok Fixes Flaws That Opened Android App to Compromise
Magecart Attack Impacts More Than 10K Online Shoppers
It’s No ‘Giggle’: Managing Expectations for Vulnerability Disclosure
WordPress Plugin Flaw Allows Attackers to Forge Emails
Sid Meier Is Here to Remind You That Life Is Full of Interesting Decisions
Bluetooth Bug Opens Devices to Man-in-the-Middle Attacks
Ransomware And Zoom-Bombing: Cyberattacks Disrupt Back-to-School Plans
Google Squashes Critical Android Media Framework Bug
TeamTNT Gains Full Remote Takeover of Cloud Instances
Critical Flaws in 3rd-Party Code Allow Takeover of Industrial Control Systems
Microsoft’s Patch Tuesday Packed with Critical RCE Bugs
Critical Intel Active Management Technology Flaw Allows Privilege Escalation
Critical Adobe Flaws Allow Attackers to Run JavaScript in Browsers
Bug in Google Maps Opened Door to Cross-Site Scripting Attacks
How Zero Trust and SASE Can Redefine Network Defenses for Remote Workforces
Vulnerability Disclosure: Ethical Hackers Seek Best Practices
Facebook Debuts Third-Party Vulnerability Disclosure Policy
WhatsApp Discloses 6 Bugs via Dedicated Security Site
Attackers Can Exploit Critical Cisco Jabber Flaw With One Message
Google Ups Product-Abuse Bug Bounties
Smartphone Showdown: Samsung’s High-End Galaxy Note20 Ultra 5G vs. Google’s Budget Pixel 4a
U.S. Agencies Must Adopt Vulnerability-Disclosure Policies by March 2021
Cisco Warns of Active Exploitation of Flaw in Carrier-Grade Routers
China-based APT Debuts Sepulcher Malware in Spear-Phishing Attacks
Magento Sites Vulnerable to RCE Stemming From Magmi Plugin Flaws
U.S. Voter Databases Offered for Free on Dark Web, Report
Magecart Credit-Card Skimmer Adds Telegram as C2 Channel
Pioneer Kitten APT Sells Corporate Network Access
Apple Accidentally Notarizes Shlayer Malware Used in Adware Campaign