30 Nov Critical RCE bugs in Android remote keyboard apps with 2M installs Three Android applications that allow users to use devices as remote keyboards for their computers have critical vulnerabilities that could expose key presses and enable remote code execution. […]
30 Nov Lastpass says hackers accessed customer data in new breach LastPass says unknown attackers breached its cloud storage using information stolen during a previous security incident from August 2022. […]
30 Nov New Windows malware scans victims’ mobile phones for data to steal Security researchers found a previously unknown backdoor they call Dophin that’s been used by North Korean hackers in highly targeted operations for more than a year to steal files and send them to Google Drive storage. […]
29 Nov Trigona ransomware spotted in increasing attacks worldwide A previously unnamed ransomware has rebranded under the name ‘Trigona,’ launching a new Tor negotiation site where they accept Monero as ransom payments. […]
29 Nov Let’s Encrypt issued over 3 billion certificates, securing 309M sites for free Internet Security Research Group (ISRG), the nonprofit behind Let’s Encrypt, says the open certificate authority (CA) has issued its three billionth certificate this year. […]
29 Nov Windows 11 KB5020044 preview update released with 25 changes Microsoft has released the November optional KB5020044 preview cumulative update for all editions of Windows 11, version 22H2. […]
29 Nov Spanish police dismantle operation that made €12M via investment scams Spanish National Police have dismantled a cybercrime organization that used fake investment sites to defraud over €12.3 million ($12.8 million) from 300 victims across Europe. […]
29 Nov Ransomware detection with Wazuh SIEM and XDR platform Wazuh is a free, open source SIEM/XDR solution with more than 10 million annual downloads. Learn more about how Wazuh can help protect your organization against the ever-evolving tactics of ransomware. […]
28 Nov Acer fixes UEFI bugs that can be used to disable Secure Boot Acer has fixed a high-severity vulnerability affecting multiple laptop models that could enable local attackers to deactivate UEFI Secure Boot on targeted systems. […]
28 Nov Malicious Android app found powering account creation service A fake Android SMS application, with 100,000 downloads on the Google Play store, has been discovered to secretly act as an SMS relay for an account creation service for sites like Microsoft, Google, Instagram, Telegram, and Facebook […]