OpenSSH Adds Protection Against Side-Channel Attacks That Now Encrypts Secret SSH Keys in the System Memory
https://thehackernews.com/2019/06/openssh-side-channel-vulnerability.html
https://thehackernews.com/2019/06/openssh-side-channel-vulnerability.html
New macOS malware found exploiting the latest GateKeeper bypass vulnerability that was disclosed publicly last month after Apple left it unpatched for 90 days
https://thehackernews.com/2019/06/macos-malware-gatekeeper.html
https://thehackernews.com/2019/06/macos-malware-gatekeeper.html
👍1
Microsoft introduces "OneDrive Personal Vault"
A new password / 2FA-protected folder within users' online Cloud Storage accounts where they can store sensitive and personal files with an extra layer of authentication.
Read more ➤ https://thehackernews.com/2019/06/microsoft-onedrive-personal-vault.html
A new password / 2FA-protected folder within users' online Cloud Storage accounts where they can store sensitive and personal files with an extra layer of authentication.
Read more ➤ https://thehackernews.com/2019/06/microsoft-onedrive-personal-vault.html
"Legit Apps Turned into Spyware" Targeting Android Users in Middle East
https://thehackernews.com/2019/06/android-malware-hacking.html
https://thehackernews.com/2019/06/android-malware-hacking.html
Account Takeover Vulnerability Found in the Popular EA Games' Origin Platform
https://thehackernews.com/2019/06/ea-origin-game-hacking.html
Checkout the video demonstration shared by CheckPoint researchers.
https://thehackernews.com/2019/06/ea-origin-game-hacking.html
Checkout the video demonstration shared by CheckPoint researchers.
Exclusive — German police yesterday raided the house of OmniRAT developer and seized his computers and mobile phones.
https://thehackernews.com/2019/06/police-raid-omnirat-developer.html
OmniRAT is one of the popular remote administration tools that allows users to monitor Android, Windows, Linux, Mac devices remotely.
https://thehackernews.com/2019/06/police-raid-omnirat-developer.html
OmniRAT is one of the popular remote administration tools that allows users to monitor Android, Windows, Linux, Mac devices remotely.
Starting with Firefox 68, the Mozilla browser will automatically trust system-installed CA Root certificates to fix certain TLS errors, often triggered when antivirus software installed on a system tries to intercept HTTPS connections.
https://thehackernews.com/2019/07/firefox-https-security.html
https://thehackernews.com/2019/07/firefox-https-security.html
Google's latest Android July 2019 security update patches 33 new vulnerabilities, the most critical of which resides in the Media framework that could allow remote attackers to execute arbitrary code on targeted devices using a specially crafted file
https://thehackernews.com/2019/07/android-security-update.html
https://thehackernews.com/2019/07/android-security-update.html
China's border guards have been caught secretly installing a surveillance app—called Feng Cai (蜂采) or BXAQ—on the tourists' phones that instantly extracts texts messages, call records, contacts, more, and also scan the device for 73,000 objected files
https://thehackernews.com/2019/07/xinjiang-fengcai-spyware.html
https://thehackernews.com/2019/07/xinjiang-fengcai-spyware.html
D-Link has agreed to implement a "comprehensive software security" program and undergo 10 years of biennial security audits to settle FTC charges over the security of its routers & IP cameras, and negligence in patching reported vulnerabilities
https://thehackernews.com/2019/07/ftc-d-link-router-security.html
https://thehackernews.com/2019/07/ftc-d-link-router-security.html
23-Year-Old DDoS Attacker Who Ruined Gamers' Christmas Gets 27 Months in Prison
Read more — https://thehackernews.com/2019/07/christmas-ddos-attacks.html
He has also been ordered to pay $95,000 in damages to Daybreak Games, previously known as Sony Online Entertainment.
Read more — https://thehackernews.com/2019/07/christmas-ddos-attacks.html
He has also been ordered to pay $95,000 in damages to Daybreak Games, previously known as Sony Online Entertainment.
Beware ➤ 17-Year-Old weakness in Firefox browser could allow downloaded HTML files to access other sensitive files stored on a victim's computer and send data back to remote attackers.
https://thehackernews.com/2019/07/firefox-same-origin-policy-hacking.html
Researcher successfully weaponized the issue and demonstrated PoC.
https://thehackernews.com/2019/07/firefox-same-origin-policy-hacking.html
Researcher successfully weaponized the issue and demonstrated PoC.
Official GitHub account of Canonical—the company behind Ubuntu Linux project—gets hacked.
Read more ➤ https://thehackernews.com/2019/07/canonical-ubuntu-github-hacked.html
Read more ➤ https://thehackernews.com/2019/07/canonical-ubuntu-github-hacked.html
British Airways Fined £183.39 Million Under #GDPR Over 2018 Data Breach
https://thehackernews.com/2019/07/british-airways-breach-gdpr-fine.html
https://thehackernews.com/2019/07/british-airways-breach-gdpr-fine.html
BEWARE — If you use (popular) Zoom video conferencing software on your Mac computer, then any website you're visiting can turn on your WEBCAM without your permission.
Learn more ⮞ https://thehackernews.com/2019/07/webcam-hacking-video-conferencing.html
Details and PoC for a severe security flaw in Zoom app disclosed.
Learn more ⮞ https://thehackernews.com/2019/07/webcam-hacking-video-conferencing.html
Details and PoC for a severe security flaw in Zoom app disclosed.
Watch Out! Microsoft Spotted Spike in Astaroth Fileless Malware Attacks
https://thehackernews.com/2019/07/astaroth-fileless-malware.html
https://thehackernews.com/2019/07/astaroth-fileless-malware.html
Over 1,300 Android Apps Have Been Caught Using "Covert and Side-Channels" Techniques to Collect Your Data Even When You Deny Permissions, Including Device Location and Identifiers.
https://thehackernews.com/2019/07/android-permission-bypass.html
https://thehackernews.com/2019/07/android-permission-bypass.html
Severe Unpatched "Prototype Pollution" Vulnerability [CVE-2019-10744] Affects All Versions [Including Latest] of Popular Lodash Library
Details & PoC ➤ https://thehackernews.com/2019/07/lodash-prototype-pollution.html
Lodash a highly popular JavaScript library used by more than 4 million projects on GitHub alone.
Details & PoC ➤ https://thehackernews.com/2019/07/lodash-prototype-pollution.html
Lodash a highly popular JavaScript library used by more than 4 million projects on GitHub alone.
July 2019 Patch Tuesday—Microsoft Releases Latest Security Updates
✅ 6 Flaws were disclosed publicly
✅ 2 Flaws found being actively exploited in the wild
Read More:
https://thehackernews.com/2019/07/microsoft-security-updates.html
✅ 6 Flaws were disclosed publicly
✅ 2 Flaws found being actively exploited in the wild
Read More:
https://thehackernews.com/2019/07/microsoft-security-updates.html
Adobe releases latest #security bulletins of July 2019 that includes patches for:
✅ Adobe Bridge CC
✅ Adobe Experience Manager
✅ Adobe Dreamweaver
❌ No Flash Player
❌ No Acrobat Reader
❌ No Critical Flaws
Read more: https://blogs.adobe.com/psirt/?p=1765
✅ Adobe Bridge CC
✅ Adobe Experience Manager
✅ Adobe Dreamweaver
❌ No Flash Player
❌ No Acrobat Reader
❌ No Critical Flaws
Read more: https://blogs.adobe.com/psirt/?p=1765
Adobe
Adobe PSIRT
Adobe Product Security Incident Response Team (PSIRT)