26 May OAS platform vulnerable to critical RCE and API access flaws Threat analysts have disclosed vulnerabilities affecting the Open Automation Software (OAS) platform, leading to device access, denial of service, and remote code execution. […]
26 May Exploit released for critical VMware auth bypass bug, patch now Proof-of-concept exploit code is now available online for a critical authentication bypass vulnerability in multiple VMware products that allows attackers to gain admin privileges. […]
25 May FTC fines Twitter $150M for using 2FA info for targeted advertising The Federal Trade Commission has fined Twitter $150 million for using phone numbers and email addresses collected to enable two-factor authentication for targeted advertising. […]
25 May Microsoft adds support for WSL2 distros on Windows Server 2022 Microsoft has announced that Windows Subsystem for Linux (WSL2) distros are now supported on Windows Server 2022 after installing this week’s cumulative update previews. […]
25 May New ‘Cheers’ Linux ransomware targets VMware ESXi servers A new ransomware named ‘Cheers’ has appeared in the cybercrime space and has started its operations by targeting vulnerable VMware ESXi servers. […]
25 May Microsoft adds Office subscriptions to Windows 11 account settings Microsoft has improved the account settings in the latest Windows 11 preview build, a settings page that now lists Office subscriptions linked to the user’s Microsoft 365 account. […]
25 May New ChromeLoader malware surge threatens browsers worldwide The ChromeLoader malware is seeing an uptick in detections this month, following a relatively stable operation volume since the start of the year, which means that the malvertiser is now becoming a widespread threat. […]
25 May BPFDoor malware uses Solaris vulnerability to get root privileges New research into the inner workings of the stealthy BPFdoor malware for Linux and Solaris reveals that the threat actor behind it leveraged an old vulnerability to achieve persistence on targeted systems. […]
24 May Windows 11 KB5014019 update fixes app crashes, slow copying Microsoft has released optional cumulative update previews for Windows 11, Windows 10 version 1809, and Windows Server 2022, with fixes for Direct3D issues impacting client and server systems. […]
24 May DuckDuckGo browser allows Microsoft trackers due to search agreement The privacy-focused DuckDuckGo browser purposely allows Microsoft trackers on third-party sites due to an agreement in their syndicated search content contract between the two companies. […]