News
-
"VMware Disclosed a Critical and Unpatched Authentication Bypass Flaw in VMware Cloud Director Appliance"VMware has disclosed an authentication bypass vulnerability in its Cloud Director Appliance, tracked as CVE-2023-34060 with a CVSS score of 9.8, that can be exploited by an attacker with network access to the appliance to bypass login restrictions when
-
"Pharmacy Provider Truepill Data Breach Hits 2.3 Million Customers"Postmeds, a company doing business as Truepill, is sending data breach notifications, informing recipients that threat actors have compromised their sensitive personal information.
-
"WP Fastest Cache Plugin Bug Exposes 600K WordPress Sites to Attacks"It has recently been discovered that the WordPress plugin WP Fastest Cache is vulnerable to an SQL injection vulnerability that could allow unauthenticated attackers to read the contents of the site’s database.
-
"Reptar: New Intel CPU Vulnerability Impacts Multi-Tenant Virtualized Environments"Intel has addressed a high severity flaw called Reptar that affects its desktop, mobile, and server CPUs.
-
"US Announces IPStorm Botnet Takedown and Its Creator’s Guilty Plea"The US government recently announced the takedown of the IPStorm botnet and the guilty plea of a man who created and operated the cybercrime service.
-
"21 Vulnerabilities Discovered in Crucial IT-OT Connective Routers"According to Forescout researchers, a popular brand of industrial routers has 21 vulnerabilities.
-
"The New Frontier in Online Security: Quantum-Safe Cryptography"In collaboration with Australia's national science agency CSIRO, a team of experts led by Monash University researchers developed an algorithm that can help strengthen online transactions against powerful attacks from quantum computers.
-
"Automakers Cleared in Privacy Lawsuit. Are Your Text Messages and Call Logs at Risk?"A federal judge in Seattle threw out a class-action lawsuit alleging that some of the top automakers used their vehicles' onboard infotainment systems to record and intercept drivers' text messages and phone call logs.
-
"Adobe Patch Tuesday: Critical Bugs in Acrobat, Reader, ColdFusion"Adobe recently rolled out a massive batch of security fixes to cover critical-severity flaws in its Acrobat and Reader, ColdFusion, inDesign, inCopy, and Audition products.
-
"82% of Attacks Show Cybercriminals Targeting Telemetry Data"According to security researchers at Sophos, cybercriminals have been observed disabling or wiping out logs in 82% of incidents. The researchers stated that time is critical when responding to an active threat.
-
"CacheWarp: CISPA Researchers Discover New Security Vulnerability in AMD SEV Technology"AMD developed Secure Encrypted Virtualization (SEV) to make its cloud services more secure, but even the latest versions of the security feature, SEV-ES (Encrypted State) and SEV-SNP (Secure Nested Paging), were vulnerable to a software-based attack.
-
"22 Energy Firms Hacked in Largest Coordinated Attack on Denmark’s Critical Infrastructure"Non-profit cybersecurity center for critical sectors SektorCERT recently revealed that hackers compromised 22 energy organizations in a coordinated attack against Denmark’s critical infrastructure.