25 May Windows 11 finally gets a ‘never combine taskbar buttons’ mode Microsoft has released a new Windows 11 dev build that adds a long-awaited feature allowing users to ensure that all windows are shown as individual items in the taskbar. […]
25 May Predator: Looking under the hood of Intellexa’s Android spyware Security researchers at Cisco Talos and the Citizen Lab have presented a new technical analysis of the commercial Android spyware ‘Predator’ and its loader ‘Alien,’ sharing its data-theft capabilities and other operational details. […]
25 May Microsoft 365 phishing attacks use encrypted RPMSG messages Attackers are now using encrypted RPMSG attachments sent via compromised Microsoft 365 accounts to steal Microsoft credentials in targeted phishing attacks designed to evade detection by email security gateways. […]
25 May D-Link fixes auth bypass and RCE flaws in D-View 8 software D-Link has fixed two critical-severity vulnerabilities in its D-View 8 network management suite that could allow remote attackers to bypass authentication and execute arbitrary code. […]
25 May New Russian-linked CosmicEnergy malware targets industrial systems Mandiant security researchers have discovered a new OT known as CosmicEnergy that targets operational technology (OT), raising concerns about potential disruptions to electric power systems worldwide. […]
25 May What’s a Double-Blind Password Strategy and When Should It Be Used Strategies such as the double-blind password strategy can be effective, but only if end-users are fully adopting the practice. Learn more about when and how to use it. […]
24 May Chinese hackers breach US critical infrastructure in stealthy attacks Microsoft says a Chinese cyberespionage group it tracks as Volt Typhoon has been targeting critical infrastructure organizations across the United States, including Guam, since at least mid-2021. […]
24 May GitLab ‘strongly recommends’ patching max severity flaw ASAP GitLab has released an emergency security update, version 16.0.1, to address a maximum severity (CVSS v3.1 score: 10.0) path traversal flaw tracked as CVE-2023-2825. […]
24 May New PowerExchange malware backdoors Microsoft Exchange servers A new PowerShell-based malware dubbed PowerExchange was used in attacks linked to APT34 Iranian state hackers to backdoor on-premise Microsoft Exchange servers. […]
24 May Windows 11 Moment 3 released with KB5026446 update, how to enable Microsoft has released the Windows 11 22H2 KB5026446 update, aka ‘Moment 3,’ bringing quite a few new and long-awaited features to the operating system. […]