21 Nov Lumma malware can allegedly restore expired Google auth cookies The Lumma information-stealer malware (aka ‘LummaC2’) is promoting a new feature that allegedly allows cybercriminals to restore expired Google cookies, which can be used to hijack Google accounts. […]
21 Nov Microsoft launches Defender Bounty Program with $20,000 rewards Microsoft has unveiled a new bug bounty program aimed at the Microsoft Defender security platform, with rewards between $500 and $20,000. […]
21 Nov Auto parts giant AutoZone warns of MOVEit data breach AutoZone is warning tens of thousands of its customers that it suffered a data breach as part of the Clop MOVEit file transfer attacks. […]
21 Nov CISA orders federal agencies to patch Looney Tunables Linux bug Today, CISA ordered U.S. federal agencies to secure their systems against an actively exploited vulnerability that lets attackers gain root privileges on many major Linux distributions. […]
21 Nov Citrix warns admins to kill NetScaler user sessions to block hackers Citrix reminded admins today that they must take additional measures after patching their NetScaler appliances against the CVE-2023-4966 ‘Citrix Bleed’ vulnerability to secure vulnerable devices against attacks. […]
20 Nov Cybersecurity firm executive pleads guilty to hacking hospitals The former chief operating officer of a cybersecurity company has pleaded guilty to hacking two hospitals, part of the Gwinnett Medical Center (GMC), in June 2021 to boost his company’s business. […]
20 Nov Canadian government discloses data breach after contractor hacks The Canadian government says two of its contractors have been hacked, exposing sensitive information belonging to an undisclosed number of government employees. […]
20 Nov Kinsing malware exploits Apache ActiveMQ RCE to plant rootkits The Kinsing malware operator is actively exploiting the CVE-2023-46604 critical vulnerability in the Apache ActiveMQ open-source message broker to compromise Linux systems. […]
20 Nov Rhysida ransomware gang claims British Library cyberattack The Rhysida ransomware gang has claimed responsibility for a cyberattack on the British Library in October, which has caused a major ongoing IT outage. […]
20 Nov How to boost Security with Self-Service Password Resets Learn more from Specops Software about the benefits of self-service password resets and ways to accomplish this with on-premises Active Directory. […]