Adobe Patches Critical, Code Execution Flaws in Multiple Products

Patch Tuesday: Adobe releases patches for 28 security vulnerabilities and warned of code execution risks on Windows and macOS platforms.
The post Adobe Patches Critical, Code Execution Flaws in Multiple Products appeared first on SecurityWeek.
Continue reading Adobe Patches Critical, Code Execution Flaws in Multiple Products

Google Pushes Rust in Legacy Firmware to Tackle Memory Safety Flaws

Google’s adoption of memory safe programming languages now includes the deployment of Rust in legacy low-level firmware codebases.
The post Google Pushes Rust in Legacy Firmware to Tackle Memory Safety Flaws appeared first on SecurityWeek.
Continue reading Google Pushes Rust in Legacy Firmware to Tackle Memory Safety Flaws

Russian GRU Unit Tied to Assassinations Linked to Global Cyber Sabotage and Espionage

A secretive Russian military unit, previously linked to assassinations and destabilization in Europe, is blamed for destructive wiper malware attacks in Ukraine.
The post Russian GRU Unit Tied to Assassinations Linked to Global Cyber Sabotage and Espio… Continue reading Russian GRU Unit Tied to Assassinations Linked to Global Cyber Sabotage and Espionage

Russian GRU Unit Tied to Assassinations Now Linked to Global Cyber Sabotage and Espionage

A secretive Russian military unit, previously linked to assassinations and destabilization in Europe, is blamed for destructive wiper malware attacks in Ukraine.
The post Russian GRU Unit Tied to Assassinations Now Linked to Global Cyber Sabotage and E… Continue reading Russian GRU Unit Tied to Assassinations Now Linked to Global Cyber Sabotage and Espionage

Microsoft Tackling Windows Logfile Flaws With New HMAC-Based Security Mitigation

Microsoft is experimenting with a major new security mitigation to block attacks targeting flaws in the Windows Common Log File System (CLFS).
The post Microsoft Tackling Windows Logfile Flaws With New HMAC-Based Security Mitigation appeared first on S… Continue reading Microsoft Tackling Windows Logfile Flaws With New HMAC-Based Security Mitigation

Microsoft Says North Korean Cryptocurrency Thieves Behind Chrome Zero-Day

Redmond’s threat intel team said exploitation of CVE-2024-7971 can be attributed to a North Korean APT targeting the cryptocurrency sector for financial gain.
The post Microsoft Says North Korean Cryptocurrency Thieves Behind Chrome Zero-Day appeared … Continue reading Microsoft Says North Korean Cryptocurrency Thieves Behind Chrome Zero-Day

Google Catches Russian APT Reusing Exploits From Spyware Merchants NSO Group, Intellexa

Google TAG publishes evidence showing identical or striking similarities between exploits used by Russia’s APT29 and commercial spyware vendors.
The post Google Catches Russian APT Reusing Exploits From Spyware Merchants NSO Group, Intellexa appeared f… Continue reading Google Catches Russian APT Reusing Exploits From Spyware Merchants NSO Group, Intellexa

Censys Finds Hundreds of Exposed Servers as Volt Typhoon APT Targets ISPs, MSPs

Amidst Volt Typhoon zero-day exploitation, Censys finds hundreds of exposed servers presenting ripe attack surface for attackers.
The post Censys Finds Hundreds of Exposed Servers as Volt Typhoon APT Targets ISPs, MSPs appeared first on SecurityWeek.
Continue reading Censys Finds Hundreds of Exposed Servers as Volt Typhoon APT Targets ISPs, MSPs