Google addresses 2 actively exploited vulnerabilities in security update

Serbian security services exploited one of the actively exploited vulnerabilities to break into the phone of a youth activist in Serbia, according to Amnesty International.

The post Google addresses 2 actively exploited vulnerabilities in security update appeared first on CyberScoop.

Continue reading Google addresses 2 actively exploited vulnerabilities in security update

Voluntary ‘Pall Mall Process’ seeks to curb spyware abuses

The 21 signatories support a number of steps, such as banning vendors who behave illegally, in a document agreed to last week in Paris.

The post Voluntary ‘Pall Mall Process’ seeks to curb spyware abuses appeared first on CyberScoop.

Continue reading Voluntary ‘Pall Mall Process’ seeks to curb spyware abuses

That massive GitHub supply chain attack? It all started with a stolen SpotBugs token

But this mystery isn’t over yet, Unit 42 opines That massive GitHub supply chain attack that spilled secrets from countless projects? It traces back to a stolen token from a SpotBugs workflow – exposed way back in November, months earlier than previous… Continue reading That massive GitHub supply chain attack? It all started with a stolen SpotBugs token

Posted in Uncategorized