FreshRSS

πŸ”’
❌ About FreshRSS
There are new available articles, click to refresh the page.
Before yesterdayZDNet | security RSS

New Unc0ver jailbreak released, works on all recent iOS versions

New "Unc0ver" jailbreak unlocks devices, even those running the current iOS 13.5 release.
  • May 24th 2020 at 10:52

Chrome: 70% of all security bugs are memory safety issues

Google software engineers are looking into ways of eliminating memory management-related bugs from Chrome.
  • May 23rd 2020 at 06:00

25 million user records leak online from popular math app Mathway

The Mathway user data has been previously on sale on the dark web, hacker forums, and Telegram channels for the past two weeks.
  • May 22nd 2020 at 16:45

Windows malware opens RDP ports on PCs for future remote access

Security experts believe the malware's operators are very likely to sell access to infected hosts to other hacker groups.
  • May 22nd 2020 at 14:50

Privilege escalation vulnerability patched in Docker Desktop for Windows

The security flaw could be used to trick the service into connecting to malicious processes.
  • May 22nd 2020 at 12:21

Silent Night Zeus financial botnet sold in underground forums

The botnet is being spread through the RIG exploit kit and COVID-19 spam campaigns.
  • May 22nd 2020 at 11:05

Ransomware deploys virtual machines to hide itself from antivirus software

The operators of the RagnarLocker ransomware are running Oracle VirtualBox to hide their presence on infected computers inside a Windows XP virtual machine.
  • May 22nd 2020 at 00:49

New Spectra attack breaks the separation between Wi-Fi and Bluetooth

Technical details to be presented in August at the Black Hat 2020 security conference.
  • May 21st 2020 at 21:22

RSA Conference moves 2021 event from February to May

RSA plays it safe for 2021 after ignoring COVID-19 warnings earlier this year and getting at least two attendees infected.
  • May 21st 2020 at 18:40

Hackers tried (and failed) to install ransomware using a zero-day in Sophos firewalls

Sophos acted quickly to put out a patch that stopped the hackers' attempts to deploy ransomware on enterprise networks protected by Sophos firewall devices.
  • May 21st 2020 at 17:03

Thousands of Israeli sites defaced with code seeking permission to access users' webcams

The hacks have been linked back to a local Israeli WordPress hosting provider.
  • May 21st 2020 at 11:38

Japan investigates potential leak of prototype missile data in Mitsubishi hack

The country is analyzing how such a leak could impact national security.
  • May 21st 2020 at 11:21

Video game developers under siege by cyberattacks seeking to plunder in-game cash

The Winnti Group is targeting gaming vendors once more with a new backdoor.
  • May 21st 2020 at 09:30

BlockFi discloses failed hack attempt after SIM swapping incident

BlockFi says a hacker SIM swapped an employee to gain access to its platform, but the hacker failed in their attempt to steal BlockFi customer funds.
  • May 21st 2020 at 03:57

Hacker leaks 40 million user records from popular Wishbone app

UPDATE: The Wishbone database leaks online after a hacker began selling it earlier this week.
  • May 20th 2020 at 23:07

Bank of America blames PPP applications leak on faulty SBA test server

BofA says SBA test platform allowed others to view details for its customers' PPP loan applications.
  • May 20th 2020 at 17:11

Signal to move away from using phone numbers as user IDs

Signal launches profile PINs, the first step in supporting Signal user accounts that are not tied to phone numbers.
  • May 20th 2020 at 14:06

β€˜Flight risk’ employees involved in 60% of insider cybersecurity incidents

The majority of staff planning their exit also take sensitive information with them, research suggests.
  • May 20th 2020 at 11:00

Adobe issues out-of-band patch to fix remote code execution flaw in animation software

Information leaks have also been patched up in Premiere Rush, Audition, and Premiere Pro.
  • May 20th 2020 at 10:08

NXNSAttack technique can be abused for large-scale DDoS attacks

New vulnerability in DNS server software can be leveraged for DDoS attacks with an 1620x amplification factor.
  • May 19th 2020 at 21:23

Hacker arrested in Ukraine for selling billions of stolen credentials

Hacker "Sanix" has been selling billions of hacked user credentials on hacker forums and Telegram channels.
  • May 19th 2020 at 17:36

WolfRAT targets WhatsApp, Facebook Messenger app users on Android devices

Updated: The new malware is unstable and appears to be a slapdash effort based on leaked DenDroid code.
  • May 19th 2020 at 17:00

Chrome 83 released with enhanced privacy controls, tab groups feature

Chrome 83 is one of the feature-rich Chrome releases in recent years.
  • May 19th 2020 at 16:05

France defends 'centralized' coronavirus tracing app, insists privacy held sacred

The country says StopCovid could be valuable in preventing a second COVID-19 wave.
  • May 19th 2020 at 10:15

FBI warns about attacks on Magento online stores via old plugin vulnerability

FBI says hackers have been planting card skimmers on online stores by exploiting a 2017 bug in the MAGMI plugin.
  • May 19th 2020 at 04:20

Supreme Court rejects lawsuit claiming Facebook provided terrorist forum support

The case accused Facebook of being materially responsible for user-generated terrorist content.
  • May 19th 2020 at 03:01

Smartphones, laptops, IoT devices vulnerable to new BIAS Bluetooth attack

New BIAS attack works against Bluetooth devices and firmware from Apple, Broadcom, Cypress, Intel, Samsung, and others.
  • May 18th 2020 at 22:07

FBI criticizes Apple for not helping crack Pensacola shooter's iPhones

Apple said back in January that it helped within hours and handed over to the FBI gigabytes of information.
  • May 18th 2020 at 18:59

Mercedes-Benz onboard logic unit (OLU) source code leaks online

Daimler allowed anyone to register on one of its on-premise GitLab servers.
  • May 18th 2020 at 14:32

Face masks prompt London police to consider pause in rollout of facial recognition cameras

The controversial scheme may be halted due to the widespread adoption of face coverings.
  • May 18th 2020 at 10:40

FBI: ProLock ransomware gains access to victim networks via Qakbot infections

The FBI also warns that the ProLock decryptor doesn't always work correctly, even after victims pay the ransom.
  • May 18th 2020 at 10:08

Supercomputers hacked across Europe to mine cryptocurrency

Confirmed infections have been reported in the UK, Germany, and Switzerland. Another suspected infection was reported in Spain.
  • May 16th 2020 at 19:42

Ransomware gang asks $42m from NY law firm, threatens to leak dirt on Trump

The REvil ransomware gang published last night 2.4 GB of Lady Gaga's legal documents.
  • May 15th 2020 at 19:13

Hackers preparing to launch ransomware attacks against hospitals arrested in Romania

Hackers were planning to use COVID-19-themed emails to infect Romanian hospitals with ransomware and disrupt operations.
  • May 15th 2020 at 13:22

Hackers target the air-gapped networks of the Taiwanese and Philippine military

Third state-sponsored malware strain disclosed this week that can jump the air gap and reach isolated networks.
  • May 15th 2020 at 09:25

Mikroceen RAT backdoors Asian government networks in new attack wave

The backdoor paved the way for the deployment of other malware including Gh0st RAT.
  • May 15th 2020 at 09:19

This new, unusual Trojan promises victims COVID-19 tax relief

QNodeService’s codebase may have helped it avoid detection by traditional antivirus solutions.
  • May 15th 2020 at 08:10

UK electricity middleman hit by cyber-attack

Elexon said the incident only impacted its internal IT network, employee laptops, and company email server.
  • May 14th 2020 at 22:12

Google to block ads that use too many system resources starting August 2020

New "Heavy Ad Intervention" will save battery life and network bandwidth usage on mobile data plans.
  • May 14th 2020 at 20:17

Russian hacker group using HTTP status codes to control malware implants

New Turla cyber-espionage operation targets diplomatic entities in Europe with new COMpfun malware.
  • May 14th 2020 at 18:04

COVID-19 blamed for 238% surge in cyberattacks against banks

Disarray caused by the pandemic has become a breeding ground for financially-motivated attacks.
  • May 14th 2020 at 11:59

A cybercrime store is selling access to more than 43,000 hacked servers

The MagBo portal provides access to hacked servers, with some belonging to local and state government, hospitals, and financial organizations.
  • May 14th 2020 at 11:52

Microsoft adds initial support for DNS-over-HTTPS (DoH) in Windows Insiders

DoH support now available in current Windows 10 Insiders Fast Ring distributions.
  • May 13th 2020 at 22:35

US formally accuses China of hacking US entities working on COVID-19 research

DHS CISA and the FBI issue joint statement on recent Chinese cyber-attacks against COVID-19-related targets.
  • May 13th 2020 at 18:45

PrintDemon vulnerability impacts all Windows versions

PrintDemon vulnerability impacts Windows versions released as far back as 1996. Patches available.
  • May 13th 2020 at 17:31

New Ramsay malware can steal sensitive documents from air-gapped networks

Ramsay can infect air-gapped computers, collect Word, PDF, and ZIP files in a hidden folder, and then wait for exfiltration.
  • May 13th 2020 at 11:37

Adobe issues patches for 36 vulnerabilities in DNG, Reader, Acrobat

May’s patch round includes fixes for remote code execution flaws.
  • May 13th 2020 at 10:01

Windows 10 to get PUA/PUP protection feature

PUA/PUP-blocking option to be added in Windows 10 May 2020 update.
  • May 13th 2020 at 08:04

DHS CISA and FBI share list of top 10 most exploited vulnerabilities

Office is the most exploited technology, followed by Apache Struts.
  • May 13th 2020 at 04:20

Huawei denies involvement in buggy Linux kernel patch proposal

Huawei says employee submitted code as part of a personal project, not on behalf of the company.
  • May 13th 2020 at 01:27

Google removed 813 creepware apps from the Android Play Store

The applications were discovered with a new algorithm called CreepRank, developed by a team of academics.
  • May 12th 2020 at 20:38

Microsoft May 2020 Patch Tuesday fixes 111 vulnerabilities

Third-largest Patch Tuesday in Microsoft's history started rolling out earlier today.
  • May 12th 2020 at 17:53

On the three-year anniversary of WannaCry, US exposes new North Korean malware

US cyber-security officials expose today three new North Korean malware strains named COPPERHEDGE, TAINTEDSCRIBE, and PEBBLEDASH.
  • May 12th 2020 at 16:36

Texas courts slammed by ransomware attack

Officials say they will not bow to any blackmail or ransom demands.
  • May 12th 2020 at 10:41

Android app promised to serve news updates, served ESET with a DDoS attack instead

The app managed to slither into Google Play and was downloaded at least 50,000 times.
  • May 12th 2020 at 08:17

Astaroth malware hides command servers in YouTube channel descriptions

Astaroth continues to evolve into a dangerous threat. Luckily, it's only spreading in Brazil only, right now.
  • May 12th 2020 at 04:02

Iran reports failed cyber-attack on Strait of Hormuz port

Iranian officials said hackers infiltrated and damaged a small number of computers at the port of Shahid Rajaei in the city of Bandar Abbas.
  • May 11th 2020 at 19:42
❌