Windows 10 Cumulative Update Preview KB4586853 Released
βMicrosoft has released the optional KB4586853 non-security cumulative update preview for Windows 10 versions 2004 and 20H2, with USB 3.0 and gaming fixes. [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-cumulative-update-preview-kb4586853-released/
βMicrosoft has released the optional KB4586853 non-security cumulative update preview for Windows 10 versions 2004 and 20H2, with USB 3.0 and gaming fixes. [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-cumulative-update-preview-kb4586853-released/
BleepingComputer
Windows 10 Cumulative Update Preview KB4586853 Released
βMicrosoft has released the optional KB4586853 non-security cumulative update preview for Windows 10 versions 2004 and 20H2, with USB 3.0 and gaming fixes.
Windows 10 20H2 update fixes broken in-place upgrade feature
Microsoft has released a new cumulative update for Windows 10 20H2 that fixes a bug preventing users from performing in-place upgrades with the Microsoft Media Creation Tool (MCT). [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-20h2-update-fixes-broken-in-place-upgrade-feature/
Microsoft has released a new cumulative update for Windows 10 20H2 that fixes a bug preventing users from performing in-place upgrades with the Microsoft Media Creation Tool (MCT). [...]
https://www.bleepingcomputer.com/news/microsoft/windows-10-20h2-update-fixes-broken-in-place-upgrade-feature/
BleepingComputer
Windows 10 20H2 update fixes broken in-place upgrade feature
Microsoft has released a new cumulative update for Windows 10 20H2 that fixes a bug preventing users from performing in-place upgrades with the Microsoft Media Creation Tool (MCT).
Android app still exposing messages of 100M users despite bug fix
GO SMS Pro, an Android instant messaging app with more than 100 million installs, is still exposing the privately shared messages of millions of users even though the developer has been working on a fix for the flaw behind the data leak for almost two weeks. [...]
https://www.bleepingcomputer.com/news/security/android-app-still-exposing-messages-of-100m-users-despite-bug-fix/
GO SMS Pro, an Android instant messaging app with more than 100 million installs, is still exposing the privately shared messages of millions of users even though the developer has been working on a fix for the flaw behind the data leak for almost two weeks. [...]
https://www.bleepingcomputer.com/news/security/android-app-still-exposing-messages-of-100m-users-despite-bug-fix/
BleepingComputer
Android app still exposing messages of 100M users despite bug fix
GO SMS Pro, an Android instant messaging app with more than 100 million installs, is still exposing the privately shared messages of millions of users even though the developer has been working on a fix for the flaw behind the data leak for almost two weeks.
FBI warns of BEC scammers using email auto-forwarding in attacks
The FBI is warning U.S. companies about scammers actively abusing auto-forwarding rules on web-based email clients to increase the likelihood of successful Business Email Compromise (BEC) attacks. [...]
https://www.bleepingcomputer.com/news/security/fbi-warns-of-bec-scammers-using-email-auto-forwarding-in-attacks/
The FBI is warning U.S. companies about scammers actively abusing auto-forwarding rules on web-based email clients to increase the likelihood of successful Business Email Compromise (BEC) attacks. [...]
https://www.bleepingcomputer.com/news/security/fbi-warns-of-bec-scammers-using-email-auto-forwarding-in-attacks/
BleepingComputer
FBI warns of BEC scammers using email auto-forwarding in attacks
The FBI is warning U.S. companies about scammers actively abusing auto-forwarding rules on web-based email clients to increase the likelihood of successful Business Email Compromise (BEC) attacks.
Microsoft fixes Windows 10 BSOD crashes caused by NVMe SSDs
Microsoft has fixed a known issue causing Windows 10 blue screens of death (BSOD) crashes when users plugged in a Thunderbolt NVMe (Non-Volatile Memory Express) Solid State Drive (SSD). [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-10-bsod-crashes-caused-by-nvme-ssds/
Microsoft has fixed a known issue causing Windows 10 blue screens of death (BSOD) crashes when users plugged in a Thunderbolt NVMe (Non-Volatile Memory Express) Solid State Drive (SSD). [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-fixes-windows-10-bsod-crashes-caused-by-nvme-ssds/
BleepingComputer
Microsoft fixes Windows 10 BSOD crashes caused by NVMe SSDs
Microsoft has fixed a known issue causing Windows 10 blue screens of death (BSOD) crashes when users plugged in a Thunderbolt NVMe (Non-Volatile Memory Express) Solid State Drive (SSD).
Critical Oracle WebLogic flaw actively exploited by DarkIRC malware
A botnet known as DarkIRC is actively targeting thousands of exposed Oracle WebLogic servers in attacks designed to exploit the CVE-2020-14882 remote code execution (RCE) vulnerability fixed by Oracle two months ago. [...]
https://www.bleepingcomputer.com/news/security/critical-oracle-weblogic-flaw-actively-exploited-by-darkirc-malware/
A botnet known as DarkIRC is actively targeting thousands of exposed Oracle WebLogic servers in attacks designed to exploit the CVE-2020-14882 remote code execution (RCE) vulnerability fixed by Oracle two months ago. [...]
https://www.bleepingcomputer.com/news/security/critical-oracle-weblogic-flaw-actively-exploited-by-darkirc-malware/
BleepingComputer
Critical Oracle WebLogic flaw actively exploited by DarkIRC malware
A botnet known as DarkIRC is actively targeting thousands of exposed Oracle WebLogic servers in attacks designed to exploit the CVE-2020-14882 remote code execution (RCE) vulnerability fixed by Oracle two months ago.
Microsoft Teams Calling gets CarPlay support, SPAM id service, more
The new Microsoft Teams additions include call transfer, spam reduction, CarPlay support, streamlined calling experience, and more. [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-teams-calling-gets-carplay-support-spam-id-service-more/
The new Microsoft Teams additions include call transfer, spam reduction, CarPlay support, streamlined calling experience, and more. [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-teams-calling-gets-carplay-support-spam-id-service-more/
BleepingComputer
Microsoft Teams Calling gets CarPlay support, SPAM id service, more
The new Microsoft Teams additions include call transfer, spam reduction, CarPlay support, streamlined calling experience, and more.
Malicious NPM packages used to install njRAT remote access trojan
New malicious NPM packages have been discovered that install the njRAT remote access trojan that allows hackers to gain control over a computer. [...]
https://www.bleepingcomputer.com/news/microsoft/malicious-npm-packages-used-to-install-njrat-remote-access-trojan/
New malicious NPM packages have been discovered that install the njRAT remote access trojan that allows hackers to gain control over a computer. [...]
https://www.bleepingcomputer.com/news/microsoft/malicious-npm-packages-used-to-install-njrat-remote-access-trojan/
BleepingComputer
Malicious NPM packages used to install njRAT remote access trojan
New malicious NPM packages have been discovered that install the njRAT remote access trojan that allows hackers to gain control over a computer.
Alabama school district shut down by ransomware attack
Ransomware operators have attacked the Huntsville City Schools district in Alabama, forcing them to shut down schools for the rest of the week and possibly next week. [...]
https://www.bleepingcomputer.com/news/security/alabama-school-district-shut-down-by-ransomware-attack/
Ransomware operators have attacked the Huntsville City Schools district in Alabama, forcing them to shut down schools for the rest of the week and possibly next week. [...]
https://www.bleepingcomputer.com/news/security/alabama-school-district-shut-down-by-ransomware-attack/
BleepingComputer
Alabama school district shut down by ransomware attack
Ransomware operators have attacked the Huntsville City Schools district in Alabama, forcing them to shut down schools for the rest of the week and possibly next week.
Cyberespionage APT group hides behind cryptomining campaigns
An advanced threat group called Bismuth recently used cryptocurrency mining as a way to hide the purpose of their activity and to avoid triggering high-priority alerts. [...]
https://www.bleepingcomputer.com/news/security/cyberespionage-apt-group-hides-behind-cryptomining-campaigns/
An advanced threat group called Bismuth recently used cryptocurrency mining as a way to hide the purpose of their activity and to avoid triggering high-priority alerts. [...]
https://www.bleepingcomputer.com/news/security/cyberespionage-apt-group-hides-behind-cryptomining-campaigns/
BleepingComputer
Cyberespionage APT group hides behind cryptomining campaigns
An advanced threat group called Bismuth recently used cryptocurrency mining as a way to hide the purpose of their activity and to avoid triggering high-priority alerts.
Russian hacking group uses Dropbox to store malware-stolen data
Russian-backed hacking group Turla has used a previously undocumented malware toolset to deploy backdoors and steal sensitive documents in targeted cyber-espionage campaigns directed at high-profile targets such as the Ministry of Foreign Affairs of European Union countries. [...]
https://www.bleepingcomputer.com/news/security/russian-hacking-group-uses-dropbox-to-store-malware-stolen-data/
Russian-backed hacking group Turla has used a previously undocumented malware toolset to deploy backdoors and steal sensitive documents in targeted cyber-espionage campaigns directed at high-profile targets such as the Ministry of Foreign Affairs of European Union countries. [...]
https://www.bleepingcomputer.com/news/security/russian-hacking-group-uses-dropbox-to-store-malware-stolen-data/
BleepingComputer
Russian hacking group uses Dropbox to store malware-stolen data
Russian-backed hacking group Turla has used a previously undocumented malware toolset to deploy backdoors and steal sensitive documents in targeted cyber-espionage campaigns directed at high-profile targets such as the Ministry of Foreign Affairs of a Europeanβ¦
FBI and Homeland Security warn of APT attacks on US think tanks
The FBI and DHS-CISA warned of state-sponsored hacking groups targeting U.S. think tank organizations in a joint alert published on Tuesday evening. [...]
https://www.bleepingcomputer.com/news/security/fbi-and-homeland-security-warn-of-apt-attacks-on-us-think-tanks/
The FBI and DHS-CISA warned of state-sponsored hacking groups targeting U.S. think tank organizations in a joint alert published on Tuesday evening. [...]
https://www.bleepingcomputer.com/news/security/fbi-and-homeland-security-warn-of-apt-attacks-on-us-think-tanks/
BleepingComputer
FBI and Homeland Security warn of APT attacks on US think tanks
The FBI and DHS-CISA warned of state-sponsored hacking groups targeting U.S. think tank organizations in a joint alert published on Tuesday evening.
Microsoft Office November 2020 updates fix Outlook, Skype issues
Microsoft has released the November 2020 non-security Microsoft Office updates with performance enhancements and fixes for known issues impacting Windows Installer (MSI) editions of Office 2016 products. [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-office-november-2020-updates-fix-outlook-skype-issues/
Microsoft has released the November 2020 non-security Microsoft Office updates with performance enhancements and fixes for known issues impacting Windows Installer (MSI) editions of Office 2016 products. [...]
https://www.bleepingcomputer.com/news/microsoft/microsoft-office-november-2020-updates-fix-outlook-skype-issues/
BleepingComputer
Microsoft Office November 2020 updates fix Outlook, Skype issues
Microsoft has released the November 2020 non-security Microsoft Office updates with performance enhancements and fixes for known issues impacting Windows Installer (MSI) editions of Office 2016 products.
Phishing targets US brokerage firms using FINRA lookalike domain
US securities industry regulator FINRA warned brokerage firms earlier this week of ongoing phishing attacks using a recently registered web domain spoofing a legitimate FINRA website. [...]
https://www.bleepingcomputer.com/news/security/phishing-targets-us-brokerage-firms-using-finra-lookalike-domain/
US securities industry regulator FINRA warned brokerage firms earlier this week of ongoing phishing attacks using a recently registered web domain spoofing a legitimate FINRA website. [...]
https://www.bleepingcomputer.com/news/security/phishing-targets-us-brokerage-firms-using-finra-lookalike-domain/
BleepingComputer
Phishing targets US brokerage firms using FINRA lookalike domain
US securities industry regulator FINRA warned brokerage firms earlier this week of ongoing phishing attacks using a recently registered web domain spoofing a legitimate FINRA website.
Google Chrome will soon warn you when using weak passwords
βYour online accounts' security is heavily dependent on how strong your passwords are, and if they are too easy, attackers could hack into your account by brute-forcing your password. [...]
https://www.bleepingcomputer.com/news/google/google-chrome-will-soon-warn-you-when-using-weak-passwords/
βYour online accounts' security is heavily dependent on how strong your passwords are, and if they are too easy, attackers could hack into your account by brute-forcing your password. [...]
https://www.bleepingcomputer.com/news/google/google-chrome-will-soon-warn-you-when-using-weak-passwords/
BleepingComputer
Google Chrome will soon warn you when using weak passwords
βYour online accounts' security is heavily dependent on how strong your passwords are, and if they are too easy, attackers could hack into your account by brute-forcing your password.
K12 online schooling giant pays Ryuk ransomware to stop data leak
Online education giant K12 Inc. has paid a ransom after their systems were hit by Ryuk ransomware in the middle of November. [...]
https://www.bleepingcomputer.com/news/security/k12-online-schooling-giant-pays-ryuk-ransomware-to-stop-data-leak/
Online education giant K12 Inc. has paid a ransom after their systems were hit by Ryuk ransomware in the middle of November. [...]
https://www.bleepingcomputer.com/news/security/k12-online-schooling-giant-pays-ryuk-ransomware-to-stop-data-leak/
BleepingComputer
K12 online schooling giant pays Ryuk ransomware to stop data leak
Online education giant K12 Inc. has paid a ransom after their systems were hit by Ryuk ransomware in the middle of November.
HMRC phishing scam abuses mail service to bypass spam filters
Threat actors are exploiting legitimate SendGrid mailing service to send HMRC phishing emails that bypass spam filters. [...]
https://www.bleepingcomputer.com/news/security/hmrc-phishing-scam-abuses-mail-service-to-bypass-spam-filters/
Threat actors are exploiting legitimate SendGrid mailing service to send HMRC phishing emails that bypass spam filters. [...]
https://www.bleepingcomputer.com/news/security/hmrc-phishing-scam-abuses-mail-service-to-bypass-spam-filters/
BleepingComputer
HMRC phishing scam abuses mail service to bypass spam filters
Threat actors are exploiting legitimate SendGrid mailing service to send HMRC phishing emails that bypass spam filters.
Google is closing 3D model site Poly to focus on AR experiences
Google is shutting down its 3D model sharing site Poly in 2021 to focus their resources on building AR experiences. [...]
https://www.bleepingcomputer.com/news/google/google-is-closing-3d-model-site-poly-to-focus-on-ar-experiences/
Google is shutting down its 3D model sharing site Poly in 2021 to focus their resources on building AR experiences. [...]
https://www.bleepingcomputer.com/news/google/google-is-closing-3d-model-site-poly-to-focus-on-ar-experiences/
BleepingComputer
Google is closing 3D model site Poly to focus on AR experiences
Google is shutting down its 3D model sharing site Poly in 2021 to focus their resources on building AR experiences.
Ransomware gang says they stole 2 million credit cards from E-Land
Clop ransomware is claiming to have stolen 2 million credit cards from E-Land Retail over a one-year period ending with last months ransomware attack. [...]
https://www.bleepingcomputer.com/news/security/ransomware-gang-says-they-stole-2-million-credit-cards-from-e-land/
Clop ransomware is claiming to have stolen 2 million credit cards from E-Land Retail over a one-year period ending with last months ransomware attack. [...]
https://www.bleepingcomputer.com/news/security/ransomware-gang-says-they-stole-2-million-credit-cards-from-e-land/
BleepingComputer
Ransomware gang says they stole 2 million credit cards from E-Land
Clop ransomware is claiming to have stolen 2 million credit cards from E-Land Retail over a one-year period ending with last months ransomware attack.
Android apps with 250M downloads still vulnerable to patched bug
Android apps with over 250 million downloads are still susceptible to a severe vulnerability in a Google library that was patched in August 2020. [...]
https://www.bleepingcomputer.com/news/security/android-apps-with-250m-downloads-still-vulnerable-to-patched-bug/
Android apps with over 250 million downloads are still susceptible to a severe vulnerability in a Google library that was patched in August 2020. [...]
https://www.bleepingcomputer.com/news/security/android-apps-with-250m-downloads-still-vulnerable-to-patched-bug/
BleepingComputer
Android apps with 200 million installs vulnerable to security bug
Android apps with over 250 million downloads are still susceptible to a severe vulnerability in a Google library that was patched in August 2020.
TrickBot's new module aims to infect your UEFI firmware
The developers of TrickBot have created a new module that probes for UEFI vulnerabilities, demonstrating the actor's effort to take attacks at a level that would give them ultimate control over infected machines. [...]
https://www.bleepingcomputer.com/news/security/trickbots-new-module-aims-to-infect-your-uefi-firmware/
The developers of TrickBot have created a new module that probes for UEFI vulnerabilities, demonstrating the actor's effort to take attacks at a level that would give them ultimate control over infected machines. [...]
https://www.bleepingcomputer.com/news/security/trickbots-new-module-aims-to-infect-your-uefi-firmware/
BleepingComputer
TrickBot's new module aims to infect your UEFI firmware
TrickBot malware developers have created a new module that probes for UEFI vulnerabilities, demonstrating the actor's effort to take attacks at a level that would give them ultimate control over infected machines.