The flaw could have let attackers send out custom newsletters and delete newsletter subscribers fro…
Read more >>Fuji Electric’s Tellus Lite V-Simulator and V-Server Lite can allow attackers to take advantage of …
Read more >>Apple has made structural improvements in iOS 14 to block message-based, zero-click exploits. Via V…
Read more >>The Pro-Ocean cryptojacking malware now comes with the ability to spread like a worm, as well as ha…
Read more >>A phishing kit has been found running on at least 700 domains - and mimicking services via false Sh…
Read more >>A growing number of cybersecurity vendors like CrowdStrike, Fidelis, FireEye, Malwarebytes, Palo Al…
Read more >>A new version of NAT slipstreaming allows cybercriminals an easy path to devices that aren't co…
Read more >>Qualys said the vuln gives any local user root access to systems running the most popular version o…
Read more >>Researchers publicly disclosed flaws in ADT's LifeShield DIY HD Video Doorbell, which could hav…
Read more >>An anonymous researcher identified bugs in the software’s kernel and WebKit browser engine that are…
Read more >>If exploited, the most serious of these flaws could lead to a denial-of-service condition for Jetso…
Read more >>An unmonitored account belonging to a deceased employee allowed Nefilim to exfiltrate data and infi…
Read more >>Hackers masquerade as security researchers to befriend analysts and eventually infect fully patched…
Read more >>A security flaw in TikTok could have allowed attackers to query query the platform's database –…
Read more >>The high-severity security vulnerability (CVE-2021-1257) allows cross-site request forgery (CSRF) a…
Read more >>The security vendor is investigating potential zero-day vulnerabilities in its Secure Mobile Access…
Read more >>The "KindleDrip" attack would have allowed attackers to siphon money from unsuspecting vi…
Read more >>Netscout researchers identify more than 14,000 existing servers that can be abused by ‘the general …
Read more >>Researchers have traced the origins of a campaign - infecting SQL servers to mine cryptocurrency - …
Read more >>Cisco is stoppering critical holes in its SD-WAN solutions and its smart software manager satellite…
Read more >>The company also issued patches for Tesla-based GPUs as part of an updated, separate security advis…
Read more >>The attack vector was not the Orion platform but rather an email-protection application for Microso…
Read more >>Mystery of spying using popular chat apps uncovered by Google Project Zero researcher. Via Vulnerab…
Read more >>Seven flaws in open-source software Dnsmasq could allow DNS cache poisoning attacks and remote code…
Read more >>Expert panel awards dubious honors to 2021 Consumer Electronics Show’s biggest flops, including sec…
Read more >>Starting Feb. 9, Microsoft will enable Domain Controller “enforcement mode” by default to address C…
Read more >>Security researchers lambasted the controversial macOS Big Sur feature for exposing users' sens…
Read more >>CISA has issued an alert warning that cloud services at U.S. organizations are being actively and s…
Read more >>The optional feature was released free to users in a technical preview this week, adding a new laye…
Read more >>Cisco fixed high-severity flaws tied to 67 CVEs overall, including ones found inits AnyConnect Secu…
Read more >>Two security vulnerabilities -- one a privilege-escalation problem and the other a stored XSS bug -…
Read more >>On the heels of a cyberattack on the EMA, cybercriminals have now leaked Pfizer and BioNTech COVID-…
Read more >>Watering-hole attacks executed by ‘experts’ exploited Chrome, Windows and Android flaws and were ca…
Read more >>The first Patch Tuesday security bulletin for 2021 from Microsoft includes fixes for one bug under …
Read more >>Adobe issued patches for seven critical arbitrary-code-execution flaws plaguing Windows and MacOS u…
Read more >>Threatpost editors discuss the SolarWinds hack, healthcare ransomware attacks and other threats tha…
Read more >>Former CISA director Chris Krebs and former Facebook security exec Alex Stamos have teamed up to cr…
Read more >>Major browsers get an update to fix separate bugs that both allow for remote attacks, which could p…
Read more >>In all, Nvidia patched flaws tied to 16 CVEs across its graphics drivers and vGPU software, in its …
Read more >>Provide your views on ransomware and how to deal with it in our anonymous Threatpost poll. Via Vuln…
Read more >>The NSA released new guidance providing system administrators with the tools to update outdated TLS…
Read more >>Report outlines deep cybersecurity challenges for the public/private seagoing sector. Via Vulnerabi…
Read more >>More than 100,000 Zyxel networking products could be vulnerable to a hardcoded credential vulnerabi…
Read more >>The widespread compromise affecting key government agencies is ongoing, according to the U.S. gover…
Read more >>Impacted are PHP-based websites running a vulnerable version of the web-app creation tool Zend Fram…
Read more >>The relentless rise in COVID-19 cases is battering already frayed healthcare systems — and ransomwa…
Read more >>Google's Android security update addressed 43 bugs overall affecting Android handsets, includin…
Read more >>Insider threats are redefined in 2021, the work-from-home trend will continue define the threat lan…
Read more >>Reflecting on 2020's record-breaking year of spam and inbox threats. Via Vulnerabilities – Thre…
Read more >>