-
Fragments of Unusual Backdoor Suggest a Potential Large-Scale Mac OS Attack
During routine detection maintenance, cybersecurity researchers at Bitdefender have stumbled upon a unique set of backdoor files with potential ties to a larger, more complex malware toolkit. As of now, these samples remain largely undetected, and there’s very little information available about them. The earliest mention of these files was identified in an anonymous April…
-
Microsoft’s Services Disrupted by DDoS Attacks from Shadowy Hacktivist Group
Microsoft Corporation’s essential services, including Outlook email and OneDrive file-sharing apps, along with its cloud computing platform, were disrupted by a series of distributed denial-of-service (DDoS) attacks, according to a recent statement by the tech giant. A group known as Anonymous Sudan claimed responsibility for the attacks through its Telegram social media channel. Microsoft initially…
-
Malicious Trojan Program Found in Pirated Windows 10
The cybersecurity firm Doctor Web recently uncovered a malicious clipper program in several unofficial Windows 10 builds that have been circulated through torrent trackers. The Trojan, named Trojan.Clipper.231, has been found to replace cryptocurrency wallet addresses in the clipboard with addresses controlled by the attackers. To date, it has been reported that the malefactors have…
-
Microsoft’s June Patch Tuesday Addresses 78 Vulnerabilities Including Critical SharePoint Bug
In its latest Patch Tuesday for June 2023, Microsoft has rolled out fixes for 78 security flaws, which includes an alarming 38 remote code execution vulnerabilities. While Microsoft has not reported any of the vulnerabilities being actively exploited, the tech giant has specifically marked several as “more likely to be exploited”. One vulnerability that has…
-
U.S. Senate Holds Inaugural Briefing on Artificial Intelligence Amid Election Security Worries
Washington, D.C. – The U.S. Senate is set to host its first-ever members-only briefing on Artificial Intelligence (AI) technology this week. Senate Majority Leader Chuck Schumer announced the briefing via Twitter, highlighting the Senate’s proactive approach in addressing the potential impact of AI on national security and the integrity of upcoming elections. As AI technology…
-
Honda’s Power Equipment eCommerce Platform Compromised Through Vulnerable API
In a significant revelation, Honda’s power equipment, marine, and lawn & garden dealer eCommerce platform has been compromised due to a vulnerable password reset API. The hacker managed to access all data on the platform, including customer orders, dealer websites, dealer users/accounts, dealer emails, and customer emails. The hacker also potentially gained access to the…
-
Cisco Releases Security Updates for Critical Vulnerabilities in Expressway Series and TelePresence VCS
Cisco has released critical software updates to address multiple vulnerabilities discovered in the Cisco Expressway Series and Cisco TelePresence Video Communication Server (VCS). According to the advisory published by Cisco on June 7, 2023, these vulnerabilities could allow an authenticated attacker with Administrator-level read-only credentials to escalate their privileges to Administrator with read-write credentials on…
-
Three Severe Vulnerabilities in VMware’s Aria Operations for Networks
If you’re using VMware’s Aria Operations for Networks, you need to be aware of three critical vulnerabilities that have been recently discovered. These vulnerabilities, if exploited, can lead to remote code execution and information disclosure, posing a significant risk to your network’s security. Let’s break down each of these vulnerabilities and understand what steps you…
-
Gigabyte Rolls Out BIOS Updates to Remove Backdoor from Motherboards
Gigabyte, the Taiwanese computer components manufacturer, has released BIOS updates for a number of its motherboards to remove a backdoor that could have been used to gain unauthorized access to the devices. The backdoor was discovered by security researchers at Eclypsium, who found that it was present in the firmware of Gigabyte motherboards dating back…









