29 Jun Proton launches open-source password manager with some limitations Proton AG has announced the global availability of Proton Pass, an open-source and free-to-use password manager available as a browser extension or mobile app on Android and iOS.manager. […]
28 Jun Microsoft Sysmon now detects when executables files are created Microsoft has released Sysmon 15, converting it into a protected process and adding the new ‘FileExecutableDetected’ option to log when executable files are created. […]
28 Jun Exploit released for new Arcserve UDP auth bypass vulnerability Data protection vendor Arcserve has addressed a high-severity security flaw in its Unified Data Protection (UDP) backup software that can let attackers bypass authentication and gain admin privileges. […]
28 Jun Linux version of Akira ransomware targets VMware ESXi servers The Akira ransomware operation uses a Linux encryptor to encrypt VMware ESXi virtual machines in double-extortion attacks against companies worldwide. […]
28 Jun Brave Browser boosts privacy with new local resources restrictions The Brave team has announced that the privacy-centric browser will soon introduce new restriction controls allowing users to specify how long sites can access local network resources. […]
27 Jun Siemens Energy confirms data breach after MOVEit data-theft attack Siemens Energy has confirmed that data was stolen during the recent Clop ransomware data-theft attacks using a zero-day vulnerability in the MOVEit Transfer platform. […]
27 Jun Hundreds of devices found violating new CISA federal agency directive Censys researchers have discovered hundreds of Internet-exposed devices on the networks of U.S. federal agencies that have to be secured according to a recently issued CISA Binding Operational Directive. […]
27 Jun EncroChat takedown led to 6,500 arrests and $979 million seized Europol announced today that the takedown of the EncroChat encrypted mobile communications platform has led to the arrest of over 6,600 people and the seizure of $979 million in illicit funds. […]
26 Jun Anatsa Android trojan now steals banking info from users in US, UK A new mobile malware campaign since March 2023 pushes the Android banking trojan ‘Anatsa’ to online banking customers in the U.S., the U.K., Germany, Austria, and Switzerland. […]
26 Jun New PindOS JavaScript dropper deploys Bumblebee, IcedID malware Security researchers discovered a new malicious tool they named PindOS that delivers the Bumblebee and IcedID malware typically associated with ransomware attacks. […]