24 Sep United Health Centers ransomware attack claimed by Vice Society California-based United Health Centers suffered a ransomware attack that reportedly disrupted all of their locations and resulted in patient data theft. […]
24 Sep Google apologizes for scaring Cloud users with ‘past due’ emails Google has apologized for a wave of emails warning Google Cloud Platform, Firebase, or API customers that their accounts may be suspended for a past due balance. […]
24 Sep Hackers exploiting critical VMware vCenter CVE-2021-22005 bug Exploit code that could be used for remote code execution on VMware vCenter Server vulnerable to CVE-2021-22005 has been released today and attackers are already using it. […]
24 Sep Emergency Google Chrome update fixes zero-day exploited in the wild Google has released Chrome 94.0.4606.61 for Windows, Mac, and Linux, an emergency update addressing a high-severity zero-day vulnerability exploited in the wild. […]
24 Sep Microsoft rushes to register Autodiscover domains leaking credentials Microsoft is rushing to register Internet domains used to steal Windows credentials sent from faulty implementations of the Microsoft Exchange Autodiscover protocol. […]
24 Sep EU officially blames Russia for ‘Ghostwriter’ hacking activities The European Union has officially linked Russia to a hacking operation known as Ghostwriter that targets high-profile EU officials, journalists, and the general public. […]
24 Sep Exploit code released for three iOS 0-days that Apple failed to patch Proof-of-concept exploit code for three iOS zero-day vulnerabilities (and a fourth one patched in July) was published on GitHub after Apple delayed patching and failed to credit the researcher. […]
24 Sep Cisco fixes highly critical vulnerabilities in IOS XE Software Cisco has patched three critical vulnerabilities affecting components in its IOS XE internetworking operating system powering routers and wireless controllers, or products running with a specific configuration. […]
24 Sep SonicWall fixes critical bug allowing SMA 100 device takeover SonicWall has patched a critical security flaw impacting several Secure Mobile Access (SMA) 100 series products that can let unauthenticated attackers remotely gain admin access on targeted devices. […]
23 Sep Google: Manifest V2 Chrome extensions to stop working in 2023 Google has shared the phase-out timeline for Manifest V2 Chrome extensions and its plans to bring Manifest V3 to full feature parity. […]