20 Jan Cisco fixes critical pre-auth bugs in SD-WAN, cloud license manager Cisco has released security updates to address pre-auth remote code execution (RCE) vulnerabilities affecting multiple SD-WAN products and the Cisco Smart Software Manager software. […]
20 Jan Google Chrome now checks for weak passwords, helps fix them Google has added a new feature to the Chrome web browser that will make it easier for users to check if their stored passwords are weak and easy to guess. […]
19 Jan Bugs in Signal, Facebook, Google chat apps let attackers spy on users Vulnerabilities found in multiple video conferencing mobile applications allowed attackers to listen to users’ surroundings without permission before the person on the other end picked up the calls. […]
19 Jan Google search bug freezes tabs when using a custom date range A bug in Google Search is causing a browser tab to freeze when searching between a specified range of dates. […]
19 Jan Malwarebytes says SolarWinds hackers accessed its internal emails Cybersecurity firm Malwarebytes today confirmed that the threat actor behind the SolarWinds supply-chain attack were able to gain access to some company emails. […]
19 Jan SolarWinds hackers used 7-Zip code to hide Raindrop Cobalt Strike loader The ongoing analysis of the SolarWinds supply-chain attack uncovered a fourth malicious tool that researchers call Raindrop and was used for distribution across computers on the victim network. […]
19 Jan Google Chrome 88 released: RIP Flash Player and FTP support Google has released Chrome 88 today, January 19th, 2021, to the Stable desktop channel, and it includes security improvements and the long-awaited removal of Adobe Flash Player. […]
19 Jan FreakOut malware exploits critical bugs to infect Linux hosts An active malicious campaign is currently targeting Linux devices running software with critical vulnerabilities that is powering network-attached storage (NAS) devices or for developing web applications and portals. […]
18 Jan IObit forums hacked to spread ransomware to its members Windows utility developer IObit was hacked over the weekend to perform a widespread attack to distribute the strange DeroHE ransomware to its forum members. […]
18 Jan Microsoft Defender to enable full auto-remediation by default Microsoft will enable fully automated threat remediation by default for Microsoft Defender for Endpoint customers who have opted into public previews starting next month, on February 16, 2021. […]