Chrome Vulnerabilities Allow Code Execution, Browser Crashes

Google released a Chrome security update fixing two high-severity flaws that could enable code execution or crashes via malicious websites.
The post Chrome Vulnerabilities Allow Code Execution, Browser Crashes appeared first on TechRepublic.
Continue reading Chrome Vulnerabilities Allow Code Execution, Browser Crashes

Chrome Vulnerabilities Allow Code Execution, Browser Crashes

Google released a Chrome security update fixing two high-severity flaws that could enable code execution or crashes via malicious websites.
The post Chrome Vulnerabilities Allow Code Execution, Browser Crashes appeared first on TechRepublic.
Continue reading Chrome Vulnerabilities Allow Code Execution, Browser Crashes

Chrome Add-On Caught Stealing Amazon Commissions

A Chrome extension posing as an Amazon ad blocker was caught hijacking affiliate links in the background, redirecting commissions without user consent.
The post Chrome Add-On Caught Stealing Amazon Commissions appeared first on TechRepublic.
Continue reading Chrome Add-On Caught Stealing Amazon Commissions

Microsoft Issues Emergency Patch for Active Office Zero-Day

Microsoft released an emergency Office patch to fix an actively exploited zero-day flaw that lets attackers bypass security via malicious files.
The post Microsoft Issues Emergency Patch for Active Office Zero-Day appeared first on TechRepublic.
Continue reading Microsoft Issues Emergency Patch for Active Office Zero-Day

New Windows Flaw Lets Attackers Bypass Mark of the Web

Microsoft patched a Windows Remote Assistance flaw that lets attackers bypass Mark of the Web, weakening protections against malicious downloads and phishing files.
The post New Windows Flaw Lets Attackers Bypass Mark of the Web appeared first on TechR… Continue reading New Windows Flaw Lets Attackers Bypass Mark of the Web

900,000 Users Hit as Malicious Chrome Extensions Steal ChatGPT, DeepSeek Chats

OX Security reveals how malicious Chrome extensions exposed AI chats from ChatGPT and DeepSeek, silently siphoning sensitive data from 900,000 users.
The post 900,000 Users Hit as Malicious Chrome Extensions Steal ChatGPT, DeepSeek Chats appeared first… Continue reading 900,000 Users Hit as Malicious Chrome Extensions Steal ChatGPT, DeepSeek Chats

Critical macOS Flaw Lets Attackers Bypass Apple Privacy Controls Without Consent

A newly disclosed macOS vulnerability bypasses Apple’s TCC privacy controls, allowing silent access to files, microphone data, and user activity.
The post Critical macOS Flaw Lets Attackers Bypass Apple Privacy Controls Without Consent appeared first o… Continue reading Critical macOS Flaw Lets Attackers Bypass Apple Privacy Controls Without Consent

Trusted Google Notifications Used in Phishing Campaign Targeting 3,000+ Orgs

Researchers warn that attackers are abusing Google notifications and cloud services to deliver phishing emails that bypass traditional email security controls.
The post Trusted Google Notifications Used in Phishing Campaign Targeting 3,000+ Orgs appear… Continue reading Trusted Google Notifications Used in Phishing Campaign Targeting 3,000+ Orgs

4.3B LinkedIn-Style Records Found in One of the Largest Data Exposures Ever

An unsecured database exposed 4.3 billion LinkedIn-derived records, enabling large-scale phishing and identity-based attacks.
The post 4.3B LinkedIn-Style Records Found in One of the Largest Data Exposures Ever appeared first on TechRepublic.
Continue reading 4.3B LinkedIn-Style Records Found in One of the Largest Data Exposures Ever

Fake ‘Leonardo DiCaprio’ Torrent Spreads Agent Tesla Malware

A fake Leonardo DiCaprio movie torrent is spreading Agent Tesla malware through trusted Windows tools
The post Fake ‘Leonardo DiCaprio’ Torrent Spreads Agent Tesla Malware appeared first on TechRepublic.
Continue reading Fake ‘Leonardo DiCaprio’ Torrent Spreads Agent Tesla Malware