Cisco Zero-Day in AnyConnect Secure Mobility Client Remains Unpatched

Cisco also disclosed high-severity vulnerabilities in its Webex and SD-WAN products. Continue reading Cisco Zero-Day in AnyConnect Secure Mobility Client Remains Unpatched

Adobe Warns Windows, MacOS Users of Critical Acrobat and Reader Flaws

The critical-severity Adobe Acrobat and Reader vulnerabilities could enable arbitrary code execution and are part of a 14-CVE patch update. Continue reading Adobe Warns Windows, MacOS Users of Critical Acrobat and Reader Flaws

Oracle Rushes Emergency Fix for Critical WebLogic Server Flaw

The remote code-execution flaw (CVE-2020-14750) is low-complexity and requires no user interaction to exploit. Continue reading Oracle Rushes Emergency Fix for Critical WebLogic Server Flaw

$100M Botnet Scheme Lands Cybercriminal 8 Years in Jail

Aleksandr Brovko faces jail time after stealing $100 million worth of personal identifiable information (PII) and financial data over the course of more than 10 years. Continue reading $100M Botnet Scheme Lands Cybercriminal 8 Years in Jail

Scammers Abuse Google Drive to Send Malicious Links

Cybercriminals are sending malicious links to hundreds of thousands of users via Google Drive notifications. Continue reading Scammers Abuse Google Drive to Send Malicious Links

Firestarter Android Malware Abuses Google Firebase Cloud Messaging

The DoNot APT threat group is leveraging the legitimate Google Firebase Cloud Messaging server as a command-and-control (C2) communication mechanism. Continue reading Firestarter Android Malware Abuses Google Firebase Cloud Messaging

Firestarter Android Malware Abuses Google Firebase Cloud Messaging

The DoNot APT threat group is leveraging the legitimate Google Firebase Cloud Messaging server as a command-and-control (C2) communication mechanism. Continue reading Firestarter Android Malware Abuses Google Firebase Cloud Messaging