October Patch Tuesday: Microsoft Patches Critical, Wormable RCE Bug

There were 11 critical bugs and six that were unpatched but publicly known in this month’s regularly scheduled Microsoft updates. Continue reading October Patch Tuesday: Microsoft Patches Critical, Wormable RCE Bug

Authentication Bug Opens Android Smart-TV Box to Data Theft

The streaming box allows arbitrary code execution as root, paving the way to pilfering social-media tokens, passwords, messaging history and more. Continue reading Authentication Bug Opens Android Smart-TV Box to Data Theft

BAHAMUT Spies-for-Hire Linked to Extensive Nation-State Activity

Researchers uncovered a sophisticated, incredibly well-resourced APT that has its fingers in wide-ranging espionage and disinformation campaigns. Continue reading BAHAMUT Spies-for-Hire Linked to Extensive Nation-State Activity

IRS COVID-19 Relief Payment Deadlines Anchor Convincing Phish

The upcoming deadlines for applying for coronavirus relief are the lure for a phish that gets around email security gateways by using a legitimate SharePoint page for data-harvesting. Continue reading IRS COVID-19 Relief Payment Deadlines Anchor Convincing Phish

Male Chastity Device Comes with Massive Security Flaws

Smart sex toy vulnerable to hacks, researchers say — which could expose users’ most sensitive bits (of data) to cybercriminals. Continue reading Male Chastity Device Comes with Massive Security Flaws