22 Jun Microsoft 365 users report Outlook, Teams won’t start or freezes Network and IT admins have been dealing with ongoing Microsoft 365 issues this week, reporting that some end users cannot use Microsoft Outlook or other Microsoft 365 apps. […]
22 Jun Microsoft Teams bug allows malware delivery from external accounts Security researchers have found a simple way to deliver malware to an organization with Microsoft Teams, despite restrictions in the application for files from external sources. […]
22 Jun NSA shares tips on blocking BlackLotus UEFI malware attacks The U.S. National Security Agency (NSA) released today guidance on how to defend against BlackLotus UEFI bootkit malware attacks. […]
22 Jun CISA orders govt agencies to patch bugs exploited by Russian hackers On Thursday, the U.S. Cybersecurity and Infrastructure Security Agency (CISA) added six more security flaws to its known exploited vulnerabilities (KEV) list. […]
22 Jun Mirai botnet targets 22 flaws in D-Link, Zyxel, Netgear devices A variant of the Mirai botnet is targeting almost two dozen vulnerabilities aiming to take control of D-Link, Arris, Zyxel, TP-Link, Tenda, Netgear, and MediaTek devices to use them for distributed denial-of-service (DDoS) attacks. […]
21 Jun iOttie discloses data breach after site hacked to steal credit cards Car mount and mobile accessory maker iOttie warns that its site was compromised for almost two months to steal online shoppers’ credit cards and personal information. […]
21 Jun Exploit released for Cisco AnyConnect bug giving SYSTEM privileges Proof-of-concept exploit code is now available for a high-severity flaw in Cisco Secure Client Software for Windows (formerly AnyConnect Secure Mobility Client) that can let attackers elevate privileges to SYSTEM. […]
21 Jun APT37 hackers deploy new FadeStealer eavesdropping malware The North Korean APT37 hacking group uses a new ‘FadeStealer’ information-stealing malware containing a ‘wiretapping’ feature, allowing the threat actor to snoop and record from victims’ microphones. […]
21 Jun Apple fixes zero-days used to deploy Triangulation spyware via iMessage Apple addressed three new zero-day vulnerabilities exploited in attacks installing Triangulation spyware on iPhones via iMessage zero-click exploits. […]
21 Jun UPS discloses data breach after exposed customer info used in SMS phishing Multinational shipping company UPS is alerting Canadian customers that some of their personal information might have been exposed via its online package look-up tools and abused in phishing attacks. […]