12 Feb WordPress Cookie Consent Plugin Fixes Critical Flaw for 700K Users Critical bugs found in the WordPress GDPR Cookie Consent plugin used by over 700,000 websites allow potential attackers to delete and change content and inject malicious JavaScript code due to improper access controls. […]
12 Feb Microsoft Urges Exchange Admins to Disable SMBv1 to Block Malware Microsoft is recommending administrators disable the SMBv1 network communication protocol on Exchange servers to provide better protection against malware threats and attacks. […]
11 Feb Amex, Chase Fraud Protection Emails Used as Clever Phishing Lure A very clever phishing campaign is underway that pretends to be fraud protection emails from American Express and Chase that ask you to confirm if the listed credit card transactions are legitimate. […]
11 Feb FBI: Cybercrime Victims Lost $3.5 Billion in 2019 FBI’s Internet Crime Complaint Center (IC3) published the 2019 Internet Crime Report which reveals that cybercrime was behind individual and business losses of $3.5 billion as shown by the 467,361 complaints received during the last year. […]
11 Feb Microsoft Patches Actively Exploited Internet Explorer Zero-Day Microsoft released security updates to patch an actively exploited zero-day remote code execution (RCE) vulnerability impacting multiple versions of Internet Explorer. […]
11 Feb Microsoft’s February 2020 Patch Tuesday Fixes 99 Flaws, IE 0day Today is Microsoft’s February 2020 Patch Tuesday and also the first time Windows 7 users will not receive free security updates. Be nice to your Windows administrators today! […]
11 Feb StockX Adds 2-Step Verification for Better Security, Enable Now The popular online sneaker and streetwear store StockX has finally added 2-step verification to their platform so that user’s accounts can be properly secured. […]
10 Feb Dell SupportAssist Bug Exposes Business, Home PCs to Attacks Dell published a security update to patch a SupportAssist Client software flaw which enables potential local attackers to execute arbitrary code with Administrator privileges on vulnerable computers. […]
10 Feb Ragnar Locker Ransomware Targets MSP Enterprise Support Tools A ransomware called Ragnar Locker is specifically targeting software commonly used by managed service providers to prevent their attack from being detected and stopped. […]
10 Feb U.S. Charges Chinese Military Hackers for Equifax Breach The U.S. Department of Justice announced today that four members of the Chinese People’s Liberation Army (PLA) 54th Research Institute were charged for allegedly hacking the credit reporting agency Equifax in 2017. […]