11 Feb CISA urges orgs to patch actively exploited Windows SeriousSAM bug The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has added to the catalog of vulnerabilities another 15 security issues actively used in cyberattacks. […]
10 Feb Microsoft fixes Defender flaw letting hackers bypass antivirus scans Microsoft has recently addressed a weakness in the Microsoft Defender Antivirus on Windows that allowed attackers to plant and execute malicious payloads without triggering Defender’s malware detection engine. […]
10 Feb Microsoft: Support for Windows 10 20H2 ending in May 2022 Microsoft reminded customers today that multiple editions of Windows 10, version 20H2 and Windows 10, version 1909 are quickly approaching end of servicing (EOS). […]
10 Feb Microsoft starts killing off WMIC in Windows, will thwart attacks Microsoft is moving forward with removing the Windows Management Instrumentation Command-line (WMIC) tool, wmic.exe, starting with the latest Windows 11 preview builds in the Dev channel. […]
10 Feb Hacking group ‘ModifiedElephant’ evaded discovery for a decade Threat analysts have linked a decade of activity to an APT (advanced persistent threat) actor called ‘ModifiedElephant’, who has managed to remain elusive to all threat intelligence firms since 2012. […]
10 Feb Apple patches new zero-day exploited to hack iPhones, iPads, Macs Apple has released security updates to fix a new zero-day vulnerability exploited in the wild by attackers to hack iPhones, iPads, and Macs. […]
10 Feb Qbot, Lokibot malware switch back to Windows Regsvr32 delivery Malware distributors have turned to an older trick known as Squiblydoo to spread Qbot and Lokibot via Microsoft Office document using regsvr32.exe. […]
09 Feb PHP Everywhere RCE flaws threaten thousands of WordPress sites Researchers found three critical remote code execution (RCE) vulnerabilities in the PHP Everywhere plugin for WordPress, used by over 30,000 websites worldwide. […]
09 Feb Microsoft Teams now needs 50% less power during meetings Microsoft has drastically reduced Microsoft Teams’ power requirements in calls and meetings since June 2020, improving experience consistency and making it more friendly with low-end devices. […]
09 Feb Wave of MageCart attacks target hundreds of outdated Magento sites Analysts have found the source of a mass breach of over 500 e-commerce stores running the Magento 1 platform and involves a single domain loading a credit card skimmer on all of them. […]