23 Nov Mali GPU ‘patch gap’ leaves Android users vulnerable to attacks A set of five exploitable vulnerabilities in Arm’s Mali GPU driver remain unfixed months after the chip maker patched them, leaving potentially millions of Android devices exposed to attacks. […]
22 Nov Windows Subsystem for Linux generally available via Microsoft Store Microsoft announced today that the Store version of Windows Subsystem for Linux (WSL) is generally available for Windows 10 and 11 customers. […]
22 Nov Microsoft warns of Remote Desktop freezes on Windows 11 22H2 Microsoft is investigating and working on a fix for Remote Desktop issues on Windows 11 systems after installing the Windows 11 2022 Update. […]
22 Nov Donut extortion group also targets victims with ransomware The Donut (D0nut) extortion group has been confirmed to deploy ransomware in double-extortion attacks on the enterprise. […]
22 Nov Hackers breach energy orgs via bugs in discontinued web server Microsoft said today that security vulnerabilities found to impact a web server discontinued since 2005 have been used to target and compromise organizations in the energy sector. […]
22 Nov Windows 10 22H2 now in broad deployment, available to everyone Microsoft has tagged Windows 10, version 22H2 (aka the Windows 10 2022 Update) for broad deployment, thus making it available to everyone via Windows Update. […]
21 Nov Two Estonians arrested for running $575M crypto Ponzi scheme Two Estonian nationals were arrested in Tallinn, Estonia, on Sunday after being indicted in the U.S. for running a massive cryptocurrency Ponzi scheme that led to losses of more than $575 million. […]
21 Nov Aurora infostealer malware increasingly adopted by cybergangs Cybercriminals are increasingly turning to a new Go-based information stealer named ‘Aurora’ to steal sensitive information from browsers and cryptocurrency apps, exfiltrate data directly from disks, and load additional payloads. […]
21 Nov Attackers bypass Coinbase and MetaMask 2FA via TeamViewer, fake support chat A crypto-stealing phishing campaign is underway to bypass multi-factor authentication and gain access to accounts on Coinbase, MetaMask, Crypto.com, and KuCoin and steal cryptocurrency. […]
21 Nov Hackers steal $300,000 in DraftKings credential stuffing attack Sports betting company DraftKings said today that it would make whole customers affected by a credential stuffing attack that led to losses of up to $300,000. […]