23 Aug Bitwarden releases free and open-source E2EE Secrets Manager Bitwarden, the maker of the popular open-source password manager tool, has released ‘Secrets Manager,’ an end-to-end encrypted secrets manager for IT professionals, software development teams, and the DevOps industry. […]
23 Aug Discord starts notifying users affected by March data breach Starting on Monday, Discord has been reaching out to users affected by a data breach disclosed earlier this year to let them know what Personal Identifying Information (PII) was exposed in the incident. […]
22 Aug Scraped data of 2.6 million Duolingo users released on hacking forum The scraped data of 2.6 million DuoLingo users was leaked on a hacking forum, allowing threat actors to conduct targeted phishing attacks using the exposed information. […]
22 Aug New HiatusRAT malware attacks target US Defense Department In a new HiatusRAT malware campaign, threat actors have targeted a server belonging to the U.S. Department of Defense in what researchers described as a reconnaissance attack. […]
21 Aug TP-Link smart bulbs can let hackers steal your WiFi password Researchers from Italy and the UK have discovered four vulnerabilities in the TP-Link Tapo L530E smart bulb and TP-Link’s Tapo app, which could allow attackers to steal their target’s WiFi password. […]
21 Aug Sneaky Amazon Google ad leads to Microsoft support scam A legitimate-looking ad for Amazon in Google search results redirects visitors to a Microsoft Defender tech support scam that locks up their browser. […]
21 Aug Ongoing Duo outage causes Azure Auth authentication errors Cisco-owned multi-factor authentication (MFA) provider Duo Security is investigating an ongoing outage that has been causing authentication failures and errors starting three hours ago. […]
21 Aug Ivanti warns of new actively exploited MobileIron zero-day bug US-based IT software company Ivanti warned customers today that a critical Sentry API authentication bypass vulnerability is being exploited in the wild. […]
21 Aug Japanese watchmaker Seiko breached by BlackCat ransomware gang The BlackCat/ALPHV ransomware gang has added Seiko to its extortion site, claiming responsibility for a cyberattack disclosed by the Japanese firm earlier this month. […]
20 Aug Google Chrome to warn when installed extensions are malware Google is testing a new feature in the Chrome browser that will warn users when an installed extension has been removed from the Chrome Web Store, usually indicative of it being malware. […]