21 Jan Windows Remote Desktop servers now used to amplify DDoS attacks Windows Remote Desktop Protocol (RDP) servers are now being abused by DDoS-for-hire services to amplify Distributed Denial of Service (DDoS) attacks. […]
21 Jan Microsoft Edge gets a password generator, leaked credentials monitor Microsoft is rolling out a built-in password generator and a leaked credentials monitoring feature on Windows and macOS systems running the latest Microsoft Edge version. […]
21 Jan Hacker blunder leaves stolen passwords exposed via Google search Hackers hitting thousands of organizations worldwide in a massive phishing campaign forgot to protect their loot and let Google the stolen passwords for public searches. […]
20 Jan Microsoft shares how SolarWinds hackers evaded detection Microsoft today shared details on how the SolarWinds hackers were able to remain undetected by hiding their malicious activity inside the networks of breached companies. […]
20 Jan Cisco fixes critical pre-auth bugs in SD-WAN, cloud license manager Cisco has released security updates to address pre-auth remote code execution (RCE) vulnerabilities affecting multiple SD-WAN products and the Cisco Smart Software Manager software. […]
20 Jan Google Chrome now checks for weak passwords, helps fix them Google has added a new feature to the Chrome web browser that will make it easier for users to check if their stored passwords are weak and easy to guess. […]
19 Jan Bugs in Signal, Facebook, Google chat apps let attackers spy on users Vulnerabilities found in multiple video conferencing mobile applications allowed attackers to listen to users’ surroundings without permission before the person on the other end picked up the calls. […]
19 Jan Malwarebytes says SolarWinds hackers accessed its internal emails Cybersecurity firm Malwarebytes today confirmed that the threat actor behind the SolarWinds supply-chain attack were able to gain access to some company emails. […]
19 Jan SolarWinds hackers used 7-Zip code to hide Raindrop Cobalt Strike loader The ongoing analysis of the SolarWinds supply-chain attack uncovered a fourth malicious tool that researchers call Raindrop and was used for distribution across computers on the victim network. […]
19 Jan FreakOut malware exploits critical bugs to infect Linux hosts An active malicious campaign is currently targeting Linux devices running software with critical vulnerabilities that is powering network-attached storage (NAS) devices or for developing web applications and portals. […]