23 Jun FBI seizes BreachForums after arresting its owner Pompompurin in March U.S. law enforcement today seized the clear web domain of the notorious BreachForums (aka Breached) hacking forum three months after apprehending its owner Conor Fitzpatrick (aka Pompompurin), under cybercrime charges. […]
23 Jun MOVEIt breach impacts GenWorth, CalPERS as data for 3.2 million exposed PBI Research Services (PBI) has suffered a data breach with three clients disclosing that the data for 4.75 million people was stolen in the recent MOVEit Transfer data-theft attacks. […]
23 Jun Fortinet fixes critical FortiNAC remote command execution flaw Cybersecurity solutions company Fortinet has updated its zero-trust access solution FortiNAC to address a critical-severity vulnerability that attackers could leverage to execute code and commands. […]
22 Jun Microsoft 365 users report Outlook, Teams won’t start or freezes Network and IT admins have been dealing with ongoing Microsoft 365 issues this week, reporting that some end users cannot use Microsoft Outlook or other Microsoft 365 apps. […]
22 Jun Microsoft Teams bug allows malware delivery from external accounts Security researchers have found a simple way to deliver malware to an organization with Microsoft Teams, despite restrictions in the application for files from external sources. […]
22 Jun NSA shares tips on blocking BlackLotus UEFI malware attacks The U.S. National Security Agency (NSA) released today guidance on how to defend against BlackLotus UEFI bootkit malware attacks. […]
22 Jun CISA orders govt agencies to patch bugs exploited by Russian hackers On Thursday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added six more security flaws to its known exploited vulnerabilities (KEV) list. […]
22 Jun Mirai botnet targets 22 flaws in D-Link, Zyxel, Netgear devices A variant of the Mirai botnet is targeting almost two dozen vulnerabilities aiming to take control of D-Link, Arris, Zyxel, TP-Link, Tenda, Netgear, and MediaTek devices to use them for distributed denial-of-service (DDoS) attacks. […]
21 Jun iOttie discloses data breach after site hacked to steal credit cards Car mount and mobile accessory maker iOttie warns that its site was compromised for almost two months to steal online shoppers’ credit cards and personal information. […]
21 Jun Exploit released for Cisco AnyConnect bug giving SYSTEM privileges Proof-of-concept exploit code is now available for a high-severity flaw in Cisco Secure Client Software for Windows (formerly AnyConnect Secure Mobility Client) that can let attackers elevate privileges to SYSTEM. […]