Instagram Fixes Password Reset Vulnerability Amid User Data Leak

The social media platform confirmed that the issue allowed third parties to send password reset emails to Instagram users.
The post Instagram Fixes Password Reset Vulnerability Amid User Data Leak appeared first on SecurityWeek.
Continue reading Instagram Fixes Password Reset Vulnerability Amid User Data Leak

Russia’s APT28 Targeting Energy Research, Defense Collaboration Entities

APT28 was seen impersonating popular webmail and VPN services, including Microsoft OWA, Google, and Sophos VPN portals.
The post Russia’s APT28 Targeting Energy Research, Defense Collaboration Entities appeared first on SecurityWeek.
Continue reading Russia’s APT28 Targeting Energy Research, Defense Collaboration Entities

FBI: North Korean Spear-Phishing Attacks Use Malicious QR Codes

The North Korean state-sponsored espionage group Kimsuky has targeted government organizations, think tanks, and academic institutions.
The post FBI: North Korean Spear-Phishing Attacks Use Malicious QR Codes appeared first on SecurityWeek.
Continue reading FBI: North Korean Spear-Phishing Attacks Use Malicious QR Codes

CISA Closes 10 Emergency Directives as Vulnerability Catalog Takes Over

The Emergency Directives were retired because they achieved objectives or targeted vulnerabilities included in the KEV catalog.
The post CISA Closes 10 Emergency Directives as Vulnerability Catalog Takes Over appeared first on SecurityWeek.
Continue reading CISA Closes 10 Emergency Directives as Vulnerability Catalog Takes Over