22 Mar New GoFetch attack on Apple Silicon CPUs can steal crypto keys A new side-channel attack called “GoFetch” impacts Apple M1, M2, and M3 processors and can be used to steal secret cryptographic keys from data in the CPU’s cache. […]
22 Mar Hackers earn $1,132,500 for 29 zero-days at Pwn2Own Vancouver Pwn2Own Vancouver 2024 has ended with security researchers collecting $1,132,500 after demoing 29 zero-days (and some bug collisions). […]
21 Mar Windows 11 Notepad finally gets spellcheck and autocorrect Microsoft continues to add new features to the Windows Notepad, today announcing a preview release with built-in spellchecking and an autocorrect feature. […]
21 Mar KDE advises extreme caution after theme wipes Linux user’s files On Wednesday, the KDE team warned Linux users to exercise “extreme caution” when installing global themes, even from the official KDE Store, because these themes run arbitrary code on devices to customize the desktop’s appearance. […]
21 Mar Unsaflok flaw can let hackers unlock millions of hotel doors Security vulnerabilities in over 3 million Saflok electronic RFID locks deployed in 13,000 hotels and homes worldwide allowed researchers to easily unlock any door in a hotel by forging a pair of keycards. […]
21 Mar Evasive Sign1 malware campaign infects 39,000 WordPress sites A previously unknown malware campaign called Sign1 has infected over 39,000 websites over the past six months, causing visitors to see unwanted redirects and popup ads. […]
21 Mar Windows 11, Tesla, and Ubuntu Linux hacked at Pwn2Own Vancouver On the first day of Pwn2Own Vancouver 2024, contestants demoed Windows 11, Tesla, and Ubuntu Linux zero-day vulnerabilities and exploit chains to win $732,500 and a Tesla Model 3 car. […]
20 Mar New Windows Server updates cause domain controller crashes, reboots The March 2024 Windows Server updates are causing some domain controllers to crash and restart, according to widespread reports from Windows administrators. […]
20 Mar Spa Grand Prix email account hacked to phish banking info from fans Hackers hijacked the official contact email for the Belgian Grand Prix event and used it to lure fans to a fake website promising a €50 gift voucher. […]
20 Mar New ‘Loop DoS’ attack may impact up to 300,000 online systems A new denial-of-service attack dubbed ‘Loop DoS’ targeting application layer protocols can pair network services into an indefinite communication loop that creates large volumes of traffic. […]