19 Jan FTC bans one more data broker from selling your location info The U.S. Federal Trade Commission (FTC) continues to target data brokers, this time in a settlement with InMarket Media, which bans the company from selling Americans’ precise location data. […]
19 Jan Chinese hackers exploit VMware bug as zero-day for two years A Chinese hacking group has been exploiting a critical vCenter Server vulnerability (CVE-2023-34048) as a zero-day since at least late 2021. […]
19 Jan Vans, North Face owner says ransomware breach affects 35 million people VF Corporation, the company behind brands like Vans, Timberland, The North Face, Dickies, and Supreme, said that more than 35 million customers had their personal information stolen in a December ransomware attack. […]
19 Jan VMware confirms critical vCenter flaw now exploited in attacks VMware has confirmed that a critical vCenter Server remote code execution vulnerability patched in October is now under active exploitation. […]
18 Jan TeamViewer abused to breach networks in new ransomware attacks Ransomware actors are again using TeamViewer to gain initial access to organization endpoints and attempt to deploy encryptors based on the leaked LockBit ransomware builder. […]
18 Jan CISA: Critical Ivanti auth bypass bug now actively exploited CISA warns that a critical authentication bypass vulnerability in Ivanti’s Endpoint Manager Mobile (EPMM) and MobileIron Core device management software (patched in August 2023) is now under active exploitation. […]
18 Jan Microsoft tests instant access to Android photos in Windows 11 Microsoft plans to provide Windows 11 users with almost instant access to photos and screenshots they’ve taken on their Android smartphones. […]
18 Jan Kansas State University cyberattack disrupts IT network and services Kansas State University (K-State) announced it is managing a cybersecurity incident that has disrupted certain network systems, including VPN, K-State Today emails, and video services on Canvas and Mediasite. […]
18 Jan Haier hits Home Assistant plugin dev with takedown notice Appliances giant Haier reportedly issued a takedown notice to a software developer for creating Home Assistant integration plugins for the company’s home appliances and releasing them on GitHub. […]
17 Jan Have I Been Pwned adds 71 million emails from Naz.API stolen account list Have I Been Pwned has added almost 71 million email addresses associated with stolen accounts in the Naz.API dataset to its data breach notification service. […]