22 Jun Mirai botnet targets 22 flaws in D-Link, Zyxel, Netgear devices A variant of the Mirai botnet is targeting almost two dozen vulnerabilities aiming to take control of D-Link, Arris, Zyxel, TP-Link, Tenda, Netgear, and MediaTek devices to use them for distributed denial-of-service (DDoS) attacks. […]
21 Jun iOttie discloses data breach after site hacked to steal credit cards Car mount and mobile accessory maker iOttie warns that its site was compromised for almost two months to steal online shoppers’ credit cards and personal information. […]
21 Jun Exploit released for Cisco AnyConnect bug giving SYSTEM privileges Proof-of-concept exploit code is now available for a high-severity flaw in Cisco Secure Client Software for Windows (formerly AnyConnect Secure Mobility Client) that can let attackers elevate privileges to SYSTEM. […]
21 Jun APT37 hackers deploy new FadeStealer eavesdropping malware The North Korean APT37 hacking group uses a new ‘FadeStealer’ information-stealing malware containing a ‘wiretapping’ feature, allowing the threat actor to snoop and record from victims’ microphones. […]
21 Jun Apple fixes zero-days used to deploy Triangulation spyware via iMessage Apple addressed three new zero-day vulnerabilities exploited in attacks installing Triangulation spyware on iPhones via iMessage zero-click exploits. […]
21 Jun UPS discloses data breach after exposed customer info used in SMS phishing Multinational shipping company UPS is alerting Canadian customers that some of their personal information might have been exposed via its online package look-up tools and abused in phishing attacks. […]
20 Jun New Condi malware builds DDoS botnet out of TP-Link AX21 routers A new DDoS-as-a-Service botnet called “Condi” emerged in May 2023, exploiting a vulnerability in TP-Link Archer AX21 (AX1800) Wi-Fi routers to build an army of bots to conduct attacks. […]
20 Jun Hackers warn University of Manchester students’ of imminent data leak The ransomware operation behind a cyberattack on the University of Manchester has begun to email students, warning that their data will soon be leaked after an extortion demand was not paid. […]
20 Jun VMware warns of critical vRealize flaw exploited in attacks VMware updated a security advisory published two weeks ago to warn customers that a now-patched critical vulnerability allowing remote code execution is being actively exploited in attacks. […]
20 Jun Microsoft shares workaround for Outlook freezes, slow starts Microsoft is working to address a known issue affecting Outlook for Microsoft 365 customers, causing slow starts and freezes as if Offline Outlook Data Files (OST) are being synced right after launch. […]