Microsoft Defender Vulnerability Remains Unpatched
Security researchers discovered that the list of locations excluded from Microsoft Defender scan is unprotected and accessible to any local user.
Independent thinking. Informed defence.
Security researchers discovered that the list of locations excluded from Microsoft Defender scan is unprotected and accessible to any local user.
A new Safari vulnerability disclosed by FingerprintJS, can leak recent browsing history and some information of your logged-in Google account.
This vulnerability enables any standard unprivileged user connected to a remote machine via remote desktop to gain file system access to the client machines
A dependency confusion attack occurs when a software installer script is tricked into pulling malicious code file from a public repository instead of the intended file of the same name from an internal repository.
FBI has issued a warning regarding a new scam utilizing Google voice authentication.The scam targets people who share their numbers publicly.
Microsoft recommends that you install the latest security updates which will patch the critical flaw now.
Indian hackers infected themselves with their own RAT. Making it possible for security researchers to gather information on their methods.
After a previous breach in August where nearly 50 million customer data were leaked, T-Mobile suffered another data breach, this time less severe. It has affected only a small subset of customers.
A high impact privacy bug was found in Facebook's Android application by a young bug bounty hunter. The 19 year old hacker received a $4,500 bug bounty
Ubisoft Entertainment a French video game company recently announced that they have identified an intrusion in their IT Infrastructure targeting Just Dance.
The National Crime Agency of United Kingdom (NCA) shared a collection of more than 585 million compromised passwords that were found during an investigation with the infamous Have I Been Pwned website.
Russian hacking group "Clop" leaked confidential information held by the UK police onto the dark web. The data were stolen from Dacoll, an IT company which handles the Police National Computer.
Phishing campaigns that use COVID-19 as a hook are still on the rise. Hackers are increasingly using vaccine-related emails in their targeted spear-phishing attacks.
The data may be old, but it's still valuable to criminals and hackers, and the leak itself could have been much worse. It represents a massive oversight by a huge, multinational, well-known company.
Facebook said it canceled 1,500 fake social media accounts used by seven surveillance-for-hire firms to conduct online attacks against government critics and members of civil society.
On Sunday, AscendEX announced via Twitter that it had identified a number of unauthorized transactions from one of its hot wallets on Saturday.
Many organizations have noticed a surge in internet scans to discover vulnerable systems and exploit attempts on them.
Checkpoint Research through its global threat index revelas the top malware for November 2021.