18 Jun VMware fixes critical vCenter RCE vulnerability, patch now VMware has issued a security advisory addressing critical vulnerabilities in vCenter Server, including remote code execution and local privilege escalation flaws. […]
18 Jun Scathing report on Medibank cyberattack highlights unenforced MFA A scathing report by Australia’s Information Commissioner details how misconfigurations and missed alerts allowed a hacker to breach Medibank and steal data from over 9 million people. […]
18 Jun FTC files complaint against Adobe for deceptive cancellation practices The Federal Trade Commission has filed a complaint in US federal court against Adobe and two executives, Maninder Sawhney and David Wadhwani, for deceptive practices related to their subscription plans. […]
18 Jun Two men guilty of breaching law enforcement portal in blackmail scheme Two men have pleaded guilty to hacking into a federal law enforcement database to steal personal information of those they were extorting. […]
17 Jun Fake Google Chrome errors trick you into running malicious PowerShell scripts A new malware distribution campaign uses fake Google Chrome, Word, and OneDrive errors to trick users into running malicious PowerShell “fixes” that install malware. […]
17 Jun Hackers use F5 BIG-IP malware to stealthily steal data for years A group of suspected Chinese cyberespionage actors named ‘Velvet Ant’ are deploying custom malware on F5 BIG-IP appliances to gain a persistent connection to the internal network and steal data. […]
17 Jun Alleged Scattered Spider sim-swapper arrested in Spain A 22-year-old British national allegedly linked to the Scattered Spider hacking group and responsible for attacks on 45 U.S. companies has been arrested in Palma de Mallorca, Spain. […]
16 Jun New ARM ‘TIKTAG’ attack impacts Google Chrome, Linux systems A new speculative execution attack named “TIKTAG” targets ARM’s Memory Tagging Extension (MTE) to leak data with over a 95% chance of success, allowing hackers to bypass the security feature. […]
15 Jun New Linux malware is controlled through emojis sent from Discord A newly discovered Linux malware dubbed ‘DISGOMOJI’ uses the novel approach of utilizing emojis to execute commands on infected devices in attacks on government agencies in India. […]
15 Jun ASUS warns of critical remote authentication bypass on 7 routers ASUS has released a new firmware update that addresses a vulnerability impacting seven router models that allow remote attackers to log in to devices. […]