10 Jun New Windows 10 SMBv3 flaw can be used for data theft, RCE attacks A new security vulnerability was found in the compression mechanism of the Microsoft Server Message Block 3.1.1 (SMBv3) network communication protocol used by multiple versions of Windows 10 and Windows Server. […]
10 Jun Microsoft fixed bug blocking Windows 10 2004 on Surface devices Microsoft has mitigated a known issue causing the Windows 10 May 2020 Update to be blocked from rolling out to some Microsoft Surface devices because of a safeguard hold applied right after the update’s release. […]
10 Jun Kingminer patches vulnerable servers to lock out competitors Operators of the cryptojacking botnet Kingminer botnet are trying to keep their business humming by applying hotfixes from Microsoft on vulnerable infected computers to lock out other threat actors thay may claim a piece of their pie. […]
10 Jun Self-destructing skimmer steals credit cards of Greenworks customers Payment card data from customers of Greenworks hardware tools website is currently being stolen by hackers via a malicious script with self-cloaking capabilities and anti-tampering protection. […]
09 Jun Adobe fixes critical remote code execution bug in Flash Player Adobe has released security updates for Adobe Flash Player, Adobe Experience Manager, and Adobe Framemaker that fix ten security vulnerabilities in the three products. […]
09 Jun Valak malware gets new plugin to steal Outlook login credentials Authors of the Valak information stealer are focusing more and more on stealing email credentials as researchers find a new module specifically built for this purpose. […]
09 Jun Microsoft now uses Windows 10 Search to promote Bing Searches Microsoft has started to display “Learn something new” alerts that promote Bing search categories via the Windows 10 search field. […]
08 Jun Maze Ransomware adds Ragnar Locker to its extortion cartel A second ransomware gang has partnered with Maze Ransomware to use their data leak platform to extort victims whose unencrypted files were stolen. […]
08 Jun CallStranger UPnP bug allows data theft, DDoS attacks, LAN scans A vulnerability in the Universal Plug and Play protocol implemented in billions of devices can be exploited to exfiltrate data, turn them into bots for distributed denial-of-service attacks (DDoS), and scan internal networks. […]
08 Jun Facebook sues company for registering impostor domains Facebook filed a lawsuit today against Compsys Domain Solutions Private Ltd, an Indian provider of proxy/privacy services, for registering domains that impersonate Facebook apps and were allegedly used for malicious purposes. […]