13 Oct Russian DDoS attack project pays contributors for more firepower A pro-Russian group created a crowdsourced project called ‘DDOSIA’ that pays volunteers launching distributed denial-of-service (DDOS) attacks against western entities. […]
13 Oct Magniber ransomware now infects Windows users via JavaScript files A recent malicious campaign delivering Magniber ransomware has been targeting Windows home users with fake security updates. […]
12 Oct Microsoft adds new RSS feed for security update notifications Microsoft has now made it possible to receive notifications about new security updates through a new RSS feed for the Security Update Guide. […]
12 Oct Unofficial WhatsApp Android app caught stealing users’ accounts A new version of an unofficial WhatsApp Android application named ‘YoWhatsApp’ has been found stealing access keys for users’ accounts. […]
12 Oct Signal will remove support for SMS text messages on Android Signal says it will start to phase out SMS and MMS message support from its Android app to streamline the user experience and prioritize security and privacy. […]
12 Oct Microsoft Defender adds command and control traffic detection Microsoft has added command-and-control (C2) traffic detection capabilities to its Microsoft Defender for Endpoint (MDE) enterprise endpoint security platform. […]
12 Oct Aruba fixes critical RCE and auth bypass flaws in EdgeConnect Aruba has released security updates for the EdgeConnect Enterprise Orchestrator, addressing multiple critical severity vulnerabilities that enable remote attackers to compromise the host. […]
11 Oct All Windows versions can now block admin brute-force attacks Microsoft announced today that IT admins can now configure any Windows system still receiving security updates to automatically block brute force attacks targeting local administrator accounts via a group policy. […]
11 Oct Android leaks some traffic even when ‘Always-on VPN’ is enabled Mullvad VPN has discovered that Android leaks traffic every time the device connects to a WiFi network, even if the “Block connections without VPN,” or “Always-on VPN,” features is enabled. […]
11 Oct VMware vCenter Server bug disclosed last year still not patched VMware informed customers today that vCenter Server 8.0 (the latest version) is still waiting for a patch to address a high-severity privilege escalation vulnerability disclosed in November 2021. […]