18 Oct Recently patched Citrix NetScaler bug exploited as zero-day since August A critical vulnerability tracked as CVE-2023-4966 in Citrix NetScaler ADC/Gateway devices has been actively exploited as a zero-day since late August, security researchers announced. […]
17 Oct SpyNote Android malware spreads via fake volcano eruption alerts Android malware ‘SpyNote’ was seen in an Italy-focused campaign that uses a phony ‘IT-alert’ public alert service website to infect visitors. […]
17 Oct Microsoft fixes known issue causing Outlook freezes, slow starts Microsoft has fixed a known issue affecting Outlook for Microsoft 365 users since June and causing slow starts and freezes as if Offline Outlook Data Files (OST) were syncing right after launch. […]
17 Oct Fighting off cyberattacks? Make sure user credentials aren’t compromised Login credential theft presents one of the biggest and most enduring cybersecurity problems. This article by Specops SOftware looks at the motivations driving credential theft and the tactics bad actors are likely to use. […]
17 Oct Thousands of Cisco IOS XE devices hacked in widespread attacks Attackers have exploited a recently disclosed critical zero-day bug to compromise and infect thousands of Cisco IOS XE devices with malicious implants. […]
17 Oct October Windows Server updates cause Hyper-V VM boot issues According to customer reports, this month’s Patch Tuesday updates are breaking virtual machines on Hyper-V hosts, causing them to no longer boot and display “failed to start” errors. […]
16 Oct Cisco warns of new IOS XE zero-day actively exploited in attacks Cisco warned admins today of a new and maximum severity zero-day vulnerability in its IOS XE Software that can let attackers gain full administrator privileges and take complete control of affected routers. […]
16 Oct Fake ‘RedAlert’ rocket alert app for Israel installs Android spyware Israeli Android users are targeted by a malicious version of the ‘RedAlert – Rocket Alerts’ app that, while it offers the promised functionality, acts as spyware in the background. […]
16 Oct CISA, FBI urge admins to patch Atlassian Confluence immediately CISA, FBI, and MS-ISAC warned network admins today to immediately patch their Atlassian Confluence servers against a maximum severity flaw actively exploited in attacks. […]
16 Oct Microsoft fixes Windows 10 security update installation issue Microsoft has resolved a known issue that caused Windows 10 security updates released during this month’s Patch Tuesday to fail with 0x8007000d errors. […]