15 May FBI seize BreachForums hacking forum used to leak stolen data The FBI has seized the notorious BreachForums hacking forum that leaked and sold stolen corporate data to other cybercriminals. […]
15 May Banco Santander warns of a data breach exposing customer info Banco Santander S.A. announced it suffered a data breach impacting customers after an unauthorized actor accessed a database hosted by one of its third-party service providers. […]
15 May Tornado Cash cryptomixer dev gets 64 months for laundering $2 billion Alexey Pertsev, one of the main developers of the Tornado Cash cryptocurrency tumbler has been sentenced to 64 months in prison for his part in helping launder more than $2 billion worth of cryptocurrency. […]
14 May PoC exploit released for RCE zero-day in D-Link EXO AX4800 routers The D-Link EXO AX4800 (DIR-X4860) router is vulnerable to remote unauthenticated command execution that could lead to complete device takeovers by attackers with access to the HNAP port. […]
14 May Microsoft fixes VPN failures caused by April Windows updates Today, Microsoft fixed a known issue breaking VPN connections across client and server platforms after installing the April 2024 Windows security updates. […]
14 May Apple fixes Safari WebKit zero-day flaw exploited at Pwn2Own Apple has released security updates to fix a zero-day vulnerability in the Safari web browser exploited during this year’s Pwn2Own Vancouver hacking competition. […]
14 May Apple and Google add alerts for unknown Bluetooth trackers to iOS, Android On Monday, Apple and Google jointly announced a new privacy feature that warns Android and iOS users when an unknown Bluetooth tracking device travels with them. […]
14 May VMware fixes three zero-day bugs exploited at Pwn2Own 2024 VMware fixed four security vulnerabilities in the Workstation and Fusion desktop hypervisors, including three zero-days exploited during the Pwn2Own Vancouver 2024 hacking contest. […]
14 May Google Chrome emergency update fixes 6th zero-day exploited in 2024 Google has released emergency security updates for the Chrome browser to address a high-severity zero-day vulnerability tagged as exploited in attacks. […]
13 May PyPi package backdoors Macs using the Sliver pen-testing suite A new package mimicked the popular ‘requests’ library on the Python Package Index (PyPI) to target macOS devices with the Sliver C2 adversary framework, used for gaining initial access to corporate networks. […]