27 May Microsoft to force better security defaults for all Azure AD tenants Microsoft has announced that it will force enable stricter secure default settings known as ‘security defaults’ on all existing Azure Active Directory (Azure AD) tenants starting in late June 2022. […]
27 May BlackCat/ALPHV ransomware asks $5 million to unlock Austrian state Austrian federal state Carinthia has been hit by the BlackCat ransomware gang, also known as ALPHV, who demanded a $5 million to unlock the encrypted computer systems. […]
26 May Intuit warns of QuickBooks phishing threatening to suspend accounts Tax software vendor Intuit has warned that QuickBooks customers are being targeted in an ongoing series of phishing attacks impersonating the company and trying to lure them with fake account suspension warnings. […]
26 May Windows 11 KB5014019 breaks Trend Micro ransomware protection This week’s Windows optional cumulative update previews have introduced a compatibility issue with some of Trend Micro’s security products that breaks some of their capabilities, including the ransomware protection feature. […]
26 May OAS platform vulnerable to critical RCE and API access flaws Threat analysts have disclosed vulnerabilities affecting the Open Automation Software (OAS) platform, leading to device access, denial of service, and remote code execution. […]
26 May Exploit released for critical VMware auth bypass bug, patch now Proof-of-concept exploit code is now available online for a critical authentication bypass vulnerability in multiple VMware products that allows attackers to gain admin privileges. […]
25 May New ‘Cheers’ Linux ransomware targets VMware ESXi servers A new ransomware named ‘Cheers’ has appeared in the cybercrime space and has started its operations by targeting vulnerable VMware ESXi servers. […]
25 May New ChromeLoader malware surge threatens browsers worldwide The ChromeLoader malware is seeing an uptick in detections this month, following a relatively stable operation volume since the start of the year, which means that the malvertiser is now becoming a widespread threat. […]
25 May BPFDoor malware uses Solaris vulnerability to get root privileges New research into the inner workings of the stealthy BPFdoor malware for Linux and Solaris reveals that the threat actor behind it leveraged an old vulnerability to achieve persistence on targeted systems. […]
24 May DuckDuckGo browser allows Microsoft trackers due to search agreement The privacy-focused DuckDuckGo browser purposely allows Microsoft trackers on third-party sites due to an agreement in their syndicated search content contract between the two companies. […]