Zyxel Patches Remote Code Execution Bug in Firewall Products

Taiwanese networking vendor Zyxel confirms security flaws in firewall and access points put users at risk of remote code execution attacks.
The post Zyxel Patches Remote Code Execution Bug in Firewall Products appeared first on SecurityWeek.
Continue reading Zyxel Patches Remote Code Execution Bug in Firewall Products

FTC Accuses Avast of Selling Customer Browsing Data to Advertisers

European security vendor Avast is charged with harvesting consumer web browsing data through its browser extension and anti-virus software and “and sold it without adequate notice and without consumer consent.”
The post FTC Accuses Avast of Selling Cus… Continue reading FTC Accuses Avast of Selling Customer Browsing Data to Advertisers

ConnectWise Confirms ScreenConnect Flaw Under Active Exploitation

Security experts describe exploitation of the CVSS 10/10 flaw as “trivial and embarrassingly easy.”
The post ConnectWise Confirms ScreenConnect Flaw Under Active Exploitation appeared first on SecurityWeek.
Continue reading ConnectWise Confirms ScreenConnect Flaw Under Active Exploitation

ConnectWise Rushes to Patch Critical Vulns in Remote Access Tool

ConnectWise ships patches for extremely critical security defects in its ScreenConnect remote desktop access product and urges emergency patching.
The post ConnectWise Rushes to Patch Critical Vulns in Remote Access Tool appeared first on SecurityWeek.
Continue reading ConnectWise Rushes to Patch Critical Vulns in Remote Access Tool

FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies

The US government says it has neutralized a network of hundreds of Ubiquiti Edge OS routers under the control of the Russia’s APT28 hackers.
The post FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies appeared first on SecurityWeek.
Continue reading FBI Dismantles Ubiquiti Router Botnet Controlled by Russian Cyberspies

Microsoft Catches APTs Using ChatGPT for Vuln Research, Malware Scripting

Microsoft threat hunters say foreign APTs are interacting with OpenAI’s ChatGPT to automate malicious vulnerability research, target reconnaissance and malware creation tasks.
The post Microsoft Catches APTs Using ChatGPT for Vuln Research, Malware Scr… Continue reading Microsoft Catches APTs Using ChatGPT for Vuln Research, Malware Scripting

Microsoft Confirms Windows Exploits Bypassing Security Features

Patch Tuesday: Microsoft pushes a massive batch of security-themed updates and calls urgent attention to exploits bypassing security features.
The post Microsoft Confirms Windows Exploits Bypassing Security Features appeared first on SecurityWeek.
Continue reading Microsoft Confirms Windows Exploits Bypassing Security Features

Patch Tuesday: Adobe Warns of Critical Flaws in Widely Deployed Software

Adobe ships patches for at least 30 documented security flaws, warning that users are exposed to code execution, security feature bypass and denial-of-service attacks.
The post Patch Tuesday: Adobe Warns of Critical Flaws in Widely Deployed Software ap… Continue reading Patch Tuesday: Adobe Warns of Critical Flaws in Widely Deployed Software

French Healthcare Payments Processor Breaches Affect Half of Population

France’s data protection agency CNIL says it is investigating massive data breaches at two companies that manage third-party healthcare payments, warning that more than 33 million people may be affected.
The post French Healthcare Payments Processor Br… Continue reading French Healthcare Payments Processor Breaches Affect Half of Population

Lawmakers Want Clampdown on American VCs Funding Chinese Tech Companies

A congressional investigation finds that US venture capital firms invested billions in Chinese technology companies in semiconductor, AI and cybersecurity, sectors that are a threat to national security.
The post Lawmakers Want Clampdown on American VC… Continue reading Lawmakers Want Clampdown on American VCs Funding Chinese Tech Companies