13 Oct Fast Company says Executive Board member info was not stolen in attack American business magazine Fast Company reached out to its Executive Board members this week to let them know their personal information was not stolen in a September 27 cyberattack that forced it to shut down its website. […]
13 Oct Exploit available for critical Fortinet auth bypass bug, patch now Proof-of-concept exploit code is now available for a critical authentication bypass vulnerability affecting Fortinet’s FortiOS, FortiProxy, and FortiSwitchManager appliances. […]
13 Oct Russian DDoS attack project pays contributors for more firepower A pro-Russian group created a crowdsourced project called ‘DDOSIA’ that pays volunteers launching distributed denial-of-service (DDOS) attacks against western entities. […]
13 Oct Magniber ransomware now infects Windows users via JavaScript files A recent malicious campaign delivering Magniber ransomware has been targeting Windows home users with fake security updates. […]
12 Oct Microsoft adds new RSS feed for security update notifications Microsoft has now made it possible to receive notifications about new security updates through a new RSS feed for the Security Update Guide. […]
12 Oct Unofficial WhatsApp Android app caught stealing users’ accounts A new version of an unofficial WhatsApp Android application named ‘YoWhatsApp’ has been found stealing access keys for users’ accounts. […]
12 Oct Signal will remove support for SMS text messages on Android Signal says it will start to phase out SMS and MMS message support from its Android app to streamline the user experience and prioritize security and privacy. […]
12 Oct Microsoft Defender adds command and control traffic detection Microsoft has added command-and-control (C2) traffic detection capabilities to its Microsoft Defender for Endpoint (MDE) enterprise endpoint security platform. […]
12 Oct Aruba fixes critical RCE and auth bypass flaws in EdgeConnect Aruba has released security updates for the EdgeConnect Enterprise Orchestrator, addressing multiple critical severity vulnerabilities that enable remote attackers to compromise the host. […]
11 Oct All Windows versions can now block admin brute-force attacks Microsoft announced today that IT admins can now configure any Windows system still receiving security updates to automatically block brute force attacks targeting local administrator accounts via a group policy. […]