04 Mar Hacked SendGrid accounts used in phishing attacks to steal logins A phishing campaign targeting users of Outlook Web Access and Office 365 services collected thousands of credentials relying on trusted domains such as SendGrid. […]
04 Mar Windows DNS SIGRed bug gets first public RCE PoC exploit A working proof-of-concept (PoC) exploit is now publicly available for the critical SIGRed Windows DNS Server remote code execution (RCE) vulnerability. […]
04 Mar DHS orders agencies to urgently patch or disconnect Exchange servers The Department of Homeland Security’s cybersecurity unit has ordered federal agencies to urgently update or disconnect Microsoft Exchange on-premises products on their networks. […]
03 Mar Cybersecurity firm Qualys likely latest victim of Accellion hacks Cybersecurity firm Qualys is the latest victim to have suffered a data breach after a zero-day vulnerability in their Accellion FTA server was exploited to steal hosted files. […]
03 Mar State hackers rush to exploit unpatched Microsoft Exchange servers Multiple state-sponsored hacking groups are actively exploiting critical Exchange bugs Microsoft patched Tuesday via emergency out-of-band security updates. […]
03 Mar Microsoft starts force installing Windows 10 20H2 on more devices Microsoft is ramping up the forced rollout of Windows 10, version 20H2 to more devices approaching end of service (EOS), as part of a new rollout phase. […]
03 Mar Cash App phishing kit deployed in the wild, courtesy of 16Shop The developer of the 16Shop phishing kit has added a new component that targets users of the popular Cash App mobile payment service. […]
02 Mar Microsoft fixes actively exploited Exchange zero-day bugs, patch now Microsoft has released emergency out-of-band security updates for all supported Microsoft Exchange versions that fix four zero-day vulnerabilities actively exploited in targeted attacks. […]
02 Mar Oxfam Australia confirms data breach after stolen info sold online Oxfam Australia has confirmed a data breach after suffering a cyberattack and their donor databases put up for sale on a hacker forum in January. […]
02 Mar Microsoft announces Windows Server 2022 with new security features Microsoft says that Windows Server 2022 will come with security improvements and will bring Secured-core to the Windows Server platform for added protection against a wide range of threats. […]