24 Feb NASA and the FAA were also breached by the SolarWinds hackers NASA and the US Federal Aviation Administration (FAA) have also been compromised by the nation-state hackers behind the SolarWinds supply-chain attack, according to a& Washington Post report. […]
24 Feb Heavily used Node.js package has a code injection vulnerability The heavily downloaded Node.js library “systeminformation” has a severe command injection vulnerability tracked as CVE-2021-21315. […]
23 Feb Ukraine: DDoS attacks on govt sites originated from Russia The National Security and Defense Council (NSDC) of Ukraine is accusing threat actors located on Russia networks of performing DDoS attacks on Ukrainian government websites since February 18th. […]
22 Feb Texas electric company warns of scammers threatening to cut power Texas electric utility Austin Energy today warned of unknown individuals impersonating the company and threatening customers over the phone that their power will be cut off unless they pay fictitious overdue bills. […]
22 Feb SHAREit fixes security bugs in app with 1 billion downloads Singapore-based Smart Media4U Technology said today that it fixed SHAREit vulnerabilities that may have allowed attackers to execute arbitrary code remotely on users’ devices. […]
22 Feb Global Accellion data breaches linked to Clop ransomware gang Threat actors associated with a financially-motivated hacker groups combined multiple zero-day vulnerabilities and a new web shell to breach up to 100 companies using Accellion’s legacy File Transfer Appliance and steal data. […]
21 Feb Lakehead University shuts down campus network after cyberattack Canadian undergraduate research university Lakehead has been dealing with a cyberattack that forced the institution earlier this week to cut off access to its servers. […]
20 Feb Microsoft Edge is crowdsourcing whether to show notification prompts Microsoft is now using crowdsourcing to determine whether to show a site’s website subscription dialog prompt in the Microsoft Edge web browser. […]
20 Feb Kroger data breach exposes pharmacy and employee data Supermarket giant Kroger has suffered a data breach after a service used to transfer files securely was hacked, and threat actors stole files. […]
20 Feb Recently fixed Windows zero-day actively exploited since mid-2020 Microsoft says that a high-severity Windows zero-day vulnerability patched during the February 2021 Patch Tuesday was exploited in the wild since at least the summer of 2020 according to its telemetry data. […]