25 Aug Microsoft: ProxyShell bugs “might be exploited,” patch servers now! Microsoft has finally published guidance today for the actively exploited ProxyShell vulnerabilities impacting multiple on-premises Microsoft Exchange versions. […]
25 Aug Microsoft will add secure preview for Office 365 quarantined emails Microsoft is updating Defender for Office 365 to protect customers from embedded email threats while previewing quarantined emails. […]
25 Aug Critical F5 BIG-IP bug impacts customers in sensitive sectors BIG-IP application services company F5 has fixed more than a dozen high-severity vulnerabilities in its networking device, one of them being elevated to critical severity under specific conditions. […]
25 Aug New Hampshire town loses $2.3 million to overseas scammers Peterborough, a small New Hampshire town, has lost $2.3 million after BEC scammers redirected several bank transfers using forged documents sent to the town’s Finance Department staff in multiple email exchanges. […]
25 Aug Ethereum urges Go devs to fix severe chain-split vulnerability Ethreum project is urging developers to apply a hotfix to squash a high-severity vulnerability. The chain-split vulnerability tracked as CVE-2021-39137, impacts “Geth,” the official Golang implementation of the Ethereum protocol. […]
24 Aug Fake OpenSea support staff are stealing cryptowallets and NFTs OpenSea users are being targeted in an ongoing and aggressive Discord phishing attack to steal cryptocurrency funds and NFTs. […]
24 Aug Samsung can remotely disable their TVs worldwide using TV Block Samsung says that it can disable any of its Samsung TV sets remotely using TV Block, a feature built into all television products sold worldwide. […]
24 Aug SteelSeries bug gives Windows 10 admin rights by plugging in a device The official app for installing SteelSeries devices on Windows 10 can be exploited to obtain administrator rights, a security researcher has found. […]
24 Aug Ransomware gang’s script shows exactly the files they’re after A PowerShell script used by the Pysa ransomware operation gives us a sneak peek at the types of data they attempt to steal during a cyberattack. […]
23 Aug FBI: OnePercent Group Ransomware targeted US orgs since Nov 2020 The Federal Bureau of Investigation (FBI) has shared info about a threat actor known as OnePercent Group that has been actively targeting US organizations since at least November 2020 as a ransomware affiliate. […]