19 Feb Over 28,500 Exchange servers vulnerable to actively exploited bug Up to 97,000 Microsoft Exchange servers may be vulnerable to a critical severity privilege escalation flaw tracked as CVE-2024-21410 that hackers are actively exploiting. […]
19 Feb Hackers exploit critical RCE flaw in Bricks WordPress site builder Hackers are actively exploiting a critical remote code execution (RCE) flaw impacting the Brick Builder Theme to run malicious PHP code on vulnerable sites. […]
17 Feb New Google Chrome feature blocks attacks against home networks Google is testing a new feature to prevent malicious public websites from pivoting through a user’s browser to attack devices and services on internal, private networks. […]
16 Feb ALPHV ransomware claims loanDepot, Prudential Financial breaches The ALPHV/Blackcat ransomware gang has claimed responsibility for the recent network breaches of Fortune 500 company Prudential Financial and mortgage lender loanDepot. […]
16 Feb Wyze investigating ‘security issue’ amid ongoing outage Wyze Labs is investigating a security issue while experiencing a service outage that has been causing connectivity issues since this morning. […]
16 Feb SolarWinds fixes critical RCE bugs in access rights audit solution SolarWinds has patched five remote code execution (RCE) flaws in its Access Rights Manager (ARM) solution, including three critical severity vulnerabilities that allow unauthenticated exploitation. […]
16 Feb Alpha ransomware linked to NetWalker operation dismantled in 2021 Security researchers analyzing the Alpha ransomware payload and modus operandi discovered overlaps with the now-defunct Netwalker ransomware operation. […]
16 Feb North Korean hackers now launder stolen crypto via YoMix tumbler The North Korean hacker collective Lazarus, infamous for having carried out numerous large-scale cryptocurrency heists over the years, has switched to using YoMix bitcoin mixer to launder stolen proceeds. […]
15 Feb Zeus, IcedID malware gangs leader pleads guilty, faces 40 years in prison Ukrainian national Vyacheslav Igorevich Penchukov, one of the heads of the notorious JabberZeus cybercrime gang, has pleaded guilty to charges related to his leadership roles in the Zeus and IcedID malware groups. […]
15 Feb Microsoft says it fixed a Windows Metadata server issue that’s still broken Microsoft claims to have fixed Windows Metadata connection issues which continue to plague customers, causing problems for users trying to manage their printers and other hardware. […]