14 Jun New Hertzbleed side-channel attack affects Intel, AMD CPUs A new side-channel attack known as Hertzbleed allows remote attackers to steal full cryptographic keys by observing variations in CPU frequency enabled by dynamic voltage and frequency scaling (DVFS). […]
14 Jun Android malware on the Google Play Store gets 2 million downloads Cybersecurity researchers have discovered adware and information-stealing malware on the Google Play Store last month, with at least five still available and having amassed over two million downloads. […]
13 Jun Kaiser Permanente data breach exposes health data of 69K people Kaiser Permanente, one of America’s leading not-for-profit health plans and health care providers, has recently disclosed a data breach that exposed the health information of more than 69,000 individuals. […]
13 Jun Gallium hackers backdoor finance, govt orgs using new PingPull malware The Gallium state-sponsored hacking group has been spotted using a new ‘PingPull’ remote access trojan against financial institutions and government entities in Europe, Southeast Asia, and Africa. […]
13 Jun Internet Explorer (almost) breathes its final byte on Wednesday Microsoft will finally end support for Internet Explorer on multiple Windows versions on Wednesday, June 15, almost 27 years after its launch on August 24, 1995. […]
13 Jun Hackers clone Coinbase, MetaMask mobile wallets to steal your crypto Security researchers have uncovered a large-scale malicious operation that uses trojanized mobile cryptocurrency wallet applications for Coinbase, MetaMask, TokenPocket, and imToken services. […]
13 Jun Metasploit 6.2.0 improves credential theft, SMB support features, more Metasploit 6.2.0 has been released with 138 new modules, 148 new improvements/features, and 156 bug fixes since version 6.1.0 was released in August 2021. […]
12 Jun PyPI package ‘keep’ mistakenly included a password stealer PyPI packages ‘keep,’ ‘pyanxdns,’ ‘api-res-py’ were found to contain a password-stealer and a backdoor due to the presence of malicious ‘request’ dependency within some versions. […]
12 Jun New Vytal Chrome extension hides location info that your VPN can’t A new Google Chrome browser extension called Vytal prevents webpages from using programming APIs to find your geographic location leaked, even when using a VPN. […]
12 Jun Hello XD ransomware now drops a backdoor while encrypting Cybersecurity researchers report increased activity of the Hello XD ransomware, whose operators are now deploying an upgraded sample featuring stronger encryption. […]