Hacking

Apple fixed the tenth actively exploited zero-day this yearApple fixed the tenth actively exploited zero-day this year

Apple fixed the tenth actively exploited zero-day this year

Apple rolled out security updates to iOS, iPadOS, macOS, tvOS, and Safari to fix a new actively exploited zero-day (CVE-2022-42856).…

3 years ago
<strong>3.5m IP cameras exposed, with US in the lead</strong><strong>3.5m IP cameras exposed, with US in the lead</strong>

<strong>3.5m IP cameras exposed, with US in the lead</strong>

The number of internet-facing cameras in the world is growing exponentially. Some of the most popular brands don't enforce a…

3 years ago
VMware fixed critical VM Escape bug demonstrated at Geekpwn hacking contestVMware fixed critical VM Escape bug demonstrated at Geekpwn hacking contest

VMware fixed critical VM Escape bug demonstrated at Geekpwn hacking contest

VMware fixed three flaws in multiple products, including a virtual machine escape issue exploited at the GeekPwn 2022 hacking competition.…

3 years ago
Citrix and NSA urge admins to fix actively exploited zero-day in Citrix ADC and GatewayCitrix and NSA urge admins to fix actively exploited zero-day in Citrix ADC and Gateway

Citrix and NSA urge admins to fix actively exploited zero-day in Citrix ADC and Gateway

Citrix urges customers to update their installs to fix actively exploited zero-day (CVE-2022-27518) in Citrix ADC and Gateway. Citrix urges…

3 years ago
Lockbit ransomware gang hacked California Department of FinanceLockbit ransomware gang hacked California Department of Finance

Lockbit ransomware gang hacked California Department of Finance

LockBit ransomware gang hacked the California Department of Finance and threatens to leak data stolen from its systems. The LockBit…

3 years ago
Experts detailed a previously undetected VMware ESXi backdoorExperts detailed a previously undetected VMware ESXi backdoor

Experts detailed a previously undetected VMware ESXi backdoor

A new Python backdoor is targeting VMware ESXi servers, allowing attackers to take over compromised systems. Juniper Networks researchers spotted…

3 years ago
Fortinet urges customers to fix actively exploited FortiOS SSL-VPN bugFortinet urges customers to fix actively exploited FortiOS SSL-VPN bug

Fortinet urges customers to fix actively exploited FortiOS SSL-VPN bug

Fortinet fixed an actively exploited FortiOS SSL-VPN flaw that could allow a remote, unauthenticated attacker to execute arbitrary code on devices.…

3 years ago
Evilnum group targets legal entities with a new Janicab variantEvilnum group targets legal entities with a new Janicab variant

Evilnum group targets legal entities with a new Janicab variant

A hack-for-hire group dubbed Evilnum is targeting travel and financial entities with the new Janicab malware variant. Kaspersky researchers reported that…

3 years ago
TrueBot infections were observed in Clop ransomware attacksTrueBot infections were observed in Clop ransomware attacks

TrueBot infections were observed in Clop ransomware attacks

Researchers reported an increase in TrueBot infections, attackers have shifted from using malicious emails as their primary delivery method to other techniques.…

3 years ago
Pwn2Own Toronto 2022 Day 4: $989K awarded for 63 unique zero-daysPwn2Own Toronto 2022 Day 4: $989K awarded for 63 unique zero-days

Pwn2Own Toronto 2022 Day 4: $989K awarded for 63 unique zero-days

The Pwn2Own Toronto 2022 is ended, and the participants earned a total of $989,750 for 63 unique zero-day exploits. The…

3 years ago