Oracle Sends Warning Emails About Paid-for Critical Java 8 Update
An email being sent by Oracle sales representatives about upcoming critical security updates for Java 8 being only available to licensed users has sparked controversy due to its wording that to some feel like it is an extortion or a scare tactic. [...]
https://www.bleepingcomputer.com/news/software/oracle-sends-warning-emails-about-paid-for-critical-java-8-update/
An email being sent by Oracle sales representatives about upcoming critical security updates for Java 8 being only available to licensed users has sparked controversy due to its wording that to some feel like it is an extortion or a scare tactic. [...]
https://www.bleepingcomputer.com/news/software/oracle-sends-warning-emails-about-paid-for-critical-java-8-update/
BleepingComputer
Oracle Sends Warning Emails About Paid-for Critical Java 8 Update
An email being sent by Oracle sales representatives about upcoming critical security updates for Java 8 being only available to licensed users has sparked controversy due to its wording that to some feel like it is an extortion or a scare tactic.
MAC Addresses Targeted by the ASUS Supply Chain Attack Now Available
Skylight Cyber released today an almost full list of MAC addresses used by the hacking group behind the Operation ShadowHammer to target ASUS customers with a backdoored version of the ASUS Live Update Utility. [...]
https://www.bleepingcomputer.com/news/security/mac-addresses-targeted-by-the-asus-supply-chain-attack-now-available/
Skylight Cyber released today an almost full list of MAC addresses used by the hacking group behind the Operation ShadowHammer to target ASUS customers with a backdoored version of the ASUS Live Update Utility. [...]
https://www.bleepingcomputer.com/news/security/mac-addresses-targeted-by-the-asus-supply-chain-attack-now-available/
BleepingComputer
MAC Addresses Targeted by the ASUS Supply Chain Attack Now Available
Skylight Cyber released today an almost full list of MAC addresses used by the hacking group behind the Operation ShadowHammer to target ASUS customers with a backdoored version of the ASUS Live Update Utility.
Windows 10 April 2019 Update Almost Ready After Anti-Cheat Bug Fix
Microsoft is one step closer to releasing the Windows 10 April 2019 Update after game developers issue fixes for an anti-cheat bug that has been plaguing Windows 10 insider builds for some time. [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-april-2019-update-almost-ready-after-anti-cheat-bug-fix/
Microsoft is one step closer to releasing the Windows 10 April 2019 Update after game developers issue fixes for an anti-cheat bug that has been plaguing Windows 10 insider builds for some time. [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-april-2019-update-almost-ready-after-anti-cheat-bug-fix/
BleepingComputer
Windows 10 April 2019 Update Almost Ready After Anti-Cheat Bug Fix
Microsoft is one step closer to releasing the Windows 10 April 2019 Update after game developers issue fixes for an anti-cheat bug that has been plaguing Windows 10 insider builds for some time.
The Week in Ransomware - March 29th 2019 - Parking for Free!
This week we saw numerous new variants of existing ransomware released, with only a few new families. The one new ransomware infection that was actively distributed this week is called UNNAM3D and was distributed through spam emails to about 30 thousand people. [...]
https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-march-29th-2019-parking-for-free/
This week we saw numerous new variants of existing ransomware released, with only a few new families. The one new ransomware infection that was actively distributed this week is called UNNAM3D and was distributed through spam emails to about 30 thousand people. [...]
https://www.bleepingcomputer.com/news/security/the-week-in-ransomware-march-29th-2019-parking-for-free/
BleepingComputer
The Week in Ransomware - March 29th 2019 - Parking for Free!
This week we saw numerous new variants of existing ransomware released, with only a few new families. The one new ransomware infection that was actively distributed this week is called UNNAM3D and was distributed through spam emails to about 30 thousand people.
Windows 10 Build 1903 Opens Folders in Their Own Process by Default
In Windows 10 Build 1903, Microsoft has enabled the "Launch folder windows in a separate process" option by default. This causes each folder you open in File Explorer to use its own process, and if one hangs, it does not affect the rest of the open folders or the desktop. [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-build-1903-opens-folders-in-their-own-process-by-default/
In Windows 10 Build 1903, Microsoft has enabled the "Launch folder windows in a separate process" option by default. This causes each folder you open in File Explorer to use its own process, and if one hangs, it does not affect the rest of the open folders or the desktop. [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-build-1903-opens-folders-in-their-own-process-by-default/
BleepingComputer
Windows 10 Build 1903 Opens Folders in Their Own Process by Default
In Windows 10 Build 1903, Microsoft has enabled the "Launch folder windows in a separate process" option by default. This causes each folder you open in File Explorer to use its own process, and if one hangs, it does not affect the rest of the open foldersβ¦
Ironically, Phishing Kit Hosted on Nigerian Government Site
Those who remember earlier days of the internet are familiar with the "Nigerian Prince letter," also known as the 419 scam. While that fraud typically runs from personal email accounts, another one uses an official Nigerian government website to host a phishing page for the DHL international courier service. [...]
https://www.bleepingcomputer.com/news/security/ironically-phishing-kit-hosted-on-nigerian-government-site/
Those who remember earlier days of the internet are familiar with the "Nigerian Prince letter," also known as the 419 scam. While that fraud typically runs from personal email accounts, another one uses an official Nigerian government website to host a phishing page for the DHL international courier service. [...]
https://www.bleepingcomputer.com/news/security/ironically-phishing-kit-hosted-on-nigerian-government-site/
BleepingComputer
Ironically, Phishing Kit Hosted on Nigerian Government Site
Those who remember earlier days of the internet are familiar with the "Nigerian Prince letter," also known as the 419 scam. While that fraud typically runs from personal email accounts, another one uses an official Nigerian government website to host a phishingβ¦
Chrome May Soon Allow Custom Avatars for Browser Profiles
One of the top requested Google Chrome features is the ability to use custom avatars for different profiles that are configured in the browser. After almost 8 years, this bug has finally been assigned to someone on the Chromium team as a feature request to improve the browser's multi-profile experience. [...]
https://www.bleepingcomputer.com/news/google/chrome-may-soon-allow-custom-avatars-for-browser-profiles/
One of the top requested Google Chrome features is the ability to use custom avatars for different profiles that are configured in the browser. After almost 8 years, this bug has finally been assigned to someone on the Chromium team as a feature request to improve the browser's multi-profile experience. [...]
https://www.bleepingcomputer.com/news/google/chrome-may-soon-allow-custom-avatars-for-browser-profiles/
BleepingComputer
Chrome May Soon Allow Custom Avatars for Browser Profiles
One of the top requested Google Chrome features is the ability to use custom avatars for different profiles that are configured in the browser. After almost 8 years, this bug has finally been assigned to someone on the Chromium team as a feature request toβ¦
Researchers Trick Tesla to Drive into Oncoming Traffic
Steering a Tesla car off the normal driving lane, potentially on a collision path, is possible without hacking the vehicle's advanced driver-assistance system, better known as the Enhanced Autopilot. [...]
https://www.bleepingcomputer.com/news/security/researchers-trick-tesla-to-drive-into-oncoming-traffic/
Steering a Tesla car off the normal driving lane, potentially on a collision path, is possible without hacking the vehicle's advanced driver-assistance system, better known as the Enhanced Autopilot. [...]
https://www.bleepingcomputer.com/news/security/researchers-trick-tesla-to-drive-into-oncoming-traffic/
BleepingComputer
Researchers Trick Tesla to Drive into Oncoming Traffic
Steering a Tesla car off the normal driving lane, potentially on a collision path, is possible without hacking the vehicle's advanced driver-assistance system, better known as the Enhanced Autopilot.
vxCrypter Is the First Ransomware to Delete Duplicate Files
The vxCrypter Ransomware could be the first ransomware infection that not only encrypts a victim's data, but also tidy's up their computer by deleting duplicate files. [...]
https://www.bleepingcomputer.com/news/security/vxcrypter-is-the-first-ransomware-to-delete-duplicate-files/
The vxCrypter Ransomware could be the first ransomware infection that not only encrypts a victim's data, but also tidy's up their computer by deleting duplicate files. [...]
https://www.bleepingcomputer.com/news/security/vxcrypter-is-the-first-ransomware-to-delete-duplicate-files/
BleepingComputer
vxCrypter Is the First Ransomware to Delete Duplicate Files
The vxCrypter Ransomware could be the first ransomware infection that not only encrypts a victim's data, but also tidy's up their computer by deleting duplicate files.
Torrent Malware Goes Down as Pirated Streaming Usage Increases
Both the number of users who downloaded malware infected pirated copies of TV show episodes to their computers and the number of such attacks dropped down during 2018 by 33% and 22% respectively as reported by Kaspersky Lab. [...]
https://www.bleepingcomputer.com/news/security/torrent-malware-goes-down-as-pirated-streaming-usage-increases/
Both the number of users who downloaded malware infected pirated copies of TV show episodes to their computers and the number of such attacks dropped down during 2018 by 33% and 22% respectively as reported by Kaspersky Lab. [...]
https://www.bleepingcomputer.com/news/security/torrent-malware-goes-down-as-pirated-streaming-usage-increases/
BleepingComputer
Torrent Malware Goes Down as Pirated Streaming Usage Increases
Both the number of users who downloaded malware infected pirated copies of TV show episodes to their computers and the number of such attacks dropped down during 2018 by 33% and 22% respectively as reported by Kaspersky Lab.
New York Albany Capital Hit by Ransomware Attack
The City of Albany, the capital of the U.S. state of New York, was hit by a ransomware attack on March 30, with city officials working over the weekend to respond to the incident. [...]
https://www.bleepingcomputer.com/news/security/new-york-albany-capital-hit-by-ransomware-attack/
The City of Albany, the capital of the U.S. state of New York, was hit by a ransomware attack on March 30, with city officials working over the weekend to respond to the incident. [...]
https://www.bleepingcomputer.com/news/security/new-york-albany-capital-hit-by-ransomware-attack/
BleepingComputer
New York Albany Capital Hit by Ransomware Attack
The City of Albany, the capital of the U.S. state of New York, was hit by a ransomware attack on March 30, with city officials working over the weekend to respond to the incident.
Notepad++ Adds GPG Signature to Verify Authenticity
Notepad++ 7.6.5 has been released and is now being signed with a GPG signature so that users who download the program can verify its authenticity. [...]
https://www.bleepingcomputer.com/news/software/notepad-adds-gpg-signature-to-verify-authenticity/
Notepad++ 7.6.5 has been released and is now being signed with a GPG signature so that users who download the program can verify its authenticity. [...]
https://www.bleepingcomputer.com/news/software/notepad-adds-gpg-signature-to-verify-authenticity/
BleepingComputer
Notepad++ Adds GPG Signature to Verify Authenticity
Notepad++ 7.6.5 has been released and is now being signed with a GPG signature so that users who download the program can verify its authenticity.
U.S. Airlines Cancel, Delay Flights Because of Aerodata Outage
Multiple U.S. airlines including United, Delta, Jetblue, and Southwest experienced system-wide computing outages because of a third-party contractor leading to numerous flight cancellations and delays throughout the day. [...]
https://www.bleepingcomputer.com/news/technology/us-airlines-cancel-delay-flights-because-of-aerodata-outage/
Multiple U.S. airlines including United, Delta, Jetblue, and Southwest experienced system-wide computing outages because of a third-party contractor leading to numerous flight cancellations and delays throughout the day. [...]
https://www.bleepingcomputer.com/news/technology/us-airlines-cancel-delay-flights-because-of-aerodata-outage/
BleepingComputer
U.S. Airlines Cancel, Delay Flights Because of Aerodata Outage
Multiple U.S. airlines including United, Delta, Jetblue, and Southwest experienced system-wide computing outages because of a third-party contractor leading to numerous flight cancellations and delays throughout the day.
Google Fixes Two Critical Android Code Execution Vulnerabilities
Two critical remote code execution and nine high severity elevation of privileges and information disclosure vulnerabilities were fixed by Google in the Android Open Source Project (AOSP) as part of security patch level 2019-04-01. [...]
https://www.bleepingcomputer.com/news/security/google-fixes-two-critical-android-code-execution-vulnerabilities/
Two critical remote code execution and nine high severity elevation of privileges and information disclosure vulnerabilities were fixed by Google in the Android Open Source Project (AOSP) as part of security patch level 2019-04-01. [...]
https://www.bleepingcomputer.com/news/security/google-fixes-two-critical-android-code-execution-vulnerabilities/
BleepingComputer
Google Fixes Two Critical Android Code Execution Vulnerabilities
Two critical remote code execution and nine high severity elevation of privileges and information disclosure vulnerabilities were fixed by Google in the Android Open Source Project (AOSP) as part of security patch level 2019-04-01.
Chromium-Based Microsoft Edge Added to Windows 10 Sandbox
With Windows enthusiasts awaiting the public release of the Chromium-based Microsoft Edge browser, Microsoft reportedly made it available in an unlikely place. According to reports, some users of Windows 10 Insider build 18865 have found that Microsoft is testing the Edge Insider build withing the Windows Sandbox feature. [...]
https://www.bleepingcomputer.com/news/microsoft/chromium-based-microsoft-edge-added-to-windows-10-sandbox/
With Windows enthusiasts awaiting the public release of the Chromium-based Microsoft Edge browser, Microsoft reportedly made it available in an unlikely place. According to reports, some users of Windows 10 Insider build 18865 have found that Microsoft is testing the Edge Insider build withing the Windows Sandbox feature. [...]
https://www.bleepingcomputer.com/news/microsoft/chromium-based-microsoft-edge-added-to-windows-10-sandbox/
BleepingComputer
Chromium-Based Microsoft Edge Added to Windows 10 Sandbox
With Windows enthusiasts awaiting the public release of the Chromium-based Microsoft Edge browser, Microsoft reportedly made it available in an unlikely place. According to reports, some users of Windows 10 Insider build 18865 have found that Microsoft isβ¦
Apache Bug Lets Normal Users Gain Root Access Via Scripts
A privilege escalation vulnerability of important severity in the Apache HTTP server allowing users with the right to write and run scripts to gain root on Unix systems was fixed in Apache httpd 2.4.39. [...]
https://www.bleepingcomputer.com/news/security/apache-bug-lets-normal-users-gain-root-access-via-scripts/
A privilege escalation vulnerability of important severity in the Apache HTTP server allowing users with the right to write and run scripts to gain root on Unix systems was fixed in Apache httpd 2.4.39. [...]
https://www.bleepingcomputer.com/news/security/apache-bug-lets-normal-users-gain-root-access-via-scripts/
BleepingComputer
Apache Bug Lets Normal Users Gain Root Access Via Scripts
A privilege escalation vulnerability of important severity in the Apache HTTP server allowing users with the right to write and run scripts to gain root on Unix systems was fixed in Apache httpd 2.4.39.
Mozilla Aims to Reduce Web Site Notification Spam in Firefox
Mozilla is performing a study on how to reduce the increasing usage of displaying web site browser subscription prompts that users find annoying and are abused to send browser notification spam appearing on a user's desktop. [...]
https://www.bleepingcomputer.com/news/security/mozilla-aims-to-reduce-web-site-notification-spam-in-firefox/
Mozilla is performing a study on how to reduce the increasing usage of displaying web site browser subscription prompts that users find annoying and are abused to send browser notification spam appearing on a user's desktop. [...]
https://www.bleepingcomputer.com/news/security/mozilla-aims-to-reduce-web-site-notification-spam-in-firefox/
BleepingComputer
Mozilla Aims to Reduce Web Site Notification Spam in Firefox
Mozilla is performing a study on how to reduce the increasing usage of displaying web site browser subscription prompts that users find annoying and are abused to send browser notification spam appearing on a user's desktop.
OceanLotus APT Uses Steganography to Load Backdoors
The OceanLotus advanced persistent threat group (also known as APT32 or Cobalt Kitty) is using steganography-based loaders to drop backdoors on compromised systems. [...]
https://www.bleepingcomputer.com/news/security/oceanlotus-apt-uses-steganography-to-load-backdoors/
The OceanLotus advanced persistent threat group (also known as APT32 or Cobalt Kitty) is using steganography-based loaders to drop backdoors on compromised systems. [...]
https://www.bleepingcomputer.com/news/security/oceanlotus-apt-uses-steganography-to-load-backdoors/
BleepingComputer
OceanLotus APT Uses Steganography to Load Backdoors
The OceanLotus advanced persistent threat group (also known as APT32 or Cobalt Kitty) is using steganography-based loaders to drop backdoors on compromised systems.
Chromium Microsoft Edge Can Play 4K Netflix Video, Unlike Chrome
To give Google more cause for concern, the new Microsoft Edge is the first Chromium browser to support both the WideVine and PlayReady DRM technologies. By including Microsoft's PlayReady DRM, the Chromium-based Edge will be able to to play Netflix videos at both 1080p HD and 4K UHD resolutions. [...]
https://www.bleepingcomputer.com/news/microsoft/chromium-microsoft-edge-can-play-4k-netflix-video-unlike-chrome/
To give Google more cause for concern, the new Microsoft Edge is the first Chromium browser to support both the WideVine and PlayReady DRM technologies. By including Microsoft's PlayReady DRM, the Chromium-based Edge will be able to to play Netflix videos at both 1080p HD and 4K UHD resolutions. [...]
https://www.bleepingcomputer.com/news/microsoft/chromium-microsoft-edge-can-play-4k-netflix-video-unlike-chrome/
BleepingComputer
Chromium Microsoft Edge Can Play 4K Netflix Video, Unlike Chrome
To give Google more cause for concern, the new Microsoft Edge is the first Chromium browser to support both the WideVine and PlayReady DRM technologies. By including Microsoft's PlayReady DRM, the Chromium-based Edge will be able to to play Netflix videosβ¦
Cryptojacking Still a Foreign Concept for Many Security Pros
For over 57% of the 150 cybersecurity professionals surveyed by Exabeam the concept of cryptojacking is not something they are acquainted with, while roughly 65% said that they are also unfamiliar with shadow mining. [...]
https://www.bleepingcomputer.com/news/security/cryptojacking-still-a-foreign-concept-for-many-security-pros/
For over 57% of the 150 cybersecurity professionals surveyed by Exabeam the concept of cryptojacking is not something they are acquainted with, while roughly 65% said that they are also unfamiliar with shadow mining. [...]
https://www.bleepingcomputer.com/news/security/cryptojacking-still-a-foreign-concept-for-many-security-pros/
BleepingComputer
Cryptojacking Still a Foreign Concept for Many Security Pros
For over 57% of the 150 cybersecurity professionals surveyed by Exabeam the concept of cryptojacking is not something they are acquainted with, while roughly 65% said that they are also unfamiliar with shadow mining.
Azure AD Password Protection Available, Lowers Spray Attack Risks
The Azure AD Password Protection feature which blocks commonly used and compromised passwords to dramatically reduce the risks raised by password spray attacks is now generally available. [...]
https://www.bleepingcomputer.com/news/security/azure-ad-password-protection-available-lowers-spray-attack-risks/
The Azure AD Password Protection feature which blocks commonly used and compromised passwords to dramatically reduce the risks raised by password spray attacks is now generally available. [...]
https://www.bleepingcomputer.com/news/security/azure-ad-password-protection-available-lowers-spray-attack-risks/
BleepingComputer
Azure AD Password Protection Available, Lowers Spray Attack Risks
The Azure AD Password Protection feature which blocks commonly used and compromised passwords to dramatically reduce the risks raised by password spray attacks is now generally available.