24 Aug FBI warns of patched Barracuda ESG appliances still being hacked The Federal Bureau of Investigation warned that patches for a critical Barracuda Email Security Gateway (ESG) remote command injection flaw are “ineffective,” and patched appliances are still being compromised in ongoing attacks. […]
24 Aug Ransomware hackers dwell time drops to 5 days, RDP still widely used Ransomware threat actors are spending less time on compromised networks before security solutions sound the alarm. In the first half of the year the hackers’ median dwell time dropped to five days from nine in 2022 […]
24 Aug Jupiter X Core WordPress plugin could let hackers hijack sites Two vulnerabilities affecting some version of Jupiter X Core, a premium plugin for setting up WordPress and WooCommerce websites, allow hijacking accounts and uploading files without authentication. […]
24 Aug New Windows updates cause UNSUPPORTED_PROCESSOR blue screens Microsoft says the August 2023 preview updates released this week for Windows 11 and Windows 10 systems are causing blue screens with errors mentioning an unsupported processor issue. […]
24 Aug New Whiffy Recon malware uses WiFi to triangulate your location Cybercriminals behind the Smoke Loader botnet are using a new piece of malware called Whiffy Recon to triangulate the location of infected devices through WiFi scanning and Google’s geolocation API. […]
24 Aug Exploit released for Ivanti Sentry bug abused as zero-day in attacks Proof-of-concept exploit code is now available for a critical Ivanti Sentry authentication bypass vulnerability that enables attackers to execute code remotely as root on vulnerable systems. […]
23 Aug Lapsus$ teen hackers convicted of high-profile cyberattacks A London jury has found that an 18-year-old member of the Lapsus$ data extortion gang helped hack multiple high-profile companies, stole data from them, and demanded a ransom threatening to leak the information. […]
23 Aug Windows 10 KB5029331 update introduces a new Backup app Microsoft has released the optional KB5029331 Preview cumulative update for Windows 10 22H2 with sixteen improvements or fixes, including the introduction of a new Backup app. […]
23 Aug Over 3,000 Openfire servers vulnerable to takover attacks Thousands of Openfire servers remain vulnerable to CVE-2023-32315, an actively exploited and path traversal vulnerability that allows an unauthenticated user to create new admin accounts. […]
23 Aug Bitwarden releases free and open-source E2EE Secrets Manager Bitwarden, the maker of the popular open-source password manager tool, has released ‘Secrets Manager,’ an end-to-end encrypted secrets manager for IT professionals, software development teams, and the DevOps industry. […]