Amnesty sues maker of Pegasus, the spyware let in by WhatsApp zero day

Amnesty International, which was sent the Pegasus spyware via a WhatsApp message, is seeking to stop NSO Group’s “web of surveillance.” Continue reading Amnesty sues maker of Pegasus, the spyware let in by WhatsApp zero day

Emergency Patch for Zero-Day Vulnerability in Internet Explorer

Microsoft has released an unscheduled patch for a remote code execution vulnerability in Internet Explorer that is actively exploited by attackers. Microsoft releases security updates on the second Tuesday of every month—known in the industry as Patch… Continue reading Emergency Patch for Zero-Day Vulnerability in Internet Explorer

How A Drive-by Download Attack Locked Down Entire City for 4 Days

We don’t really know the pain and cost of a downtime event unless we are directly touched.

Be it a flood, electrical failure, ransomware attack or other broad geographic events; we don’t know what it is really like to have to restore IT infrastructure… Continue reading How A Drive-by Download Attack Locked Down Entire City for 4 Days

Do malicious downloads bypass integrated browser downloader, if so how does that happen?

I’ve been reading a lot on here about malicious downloads from browsing sites, drive by downloads, etc, but never heard talk about how the download happens, and how it would bypass the internal download of the browser. In mo… Continue reading Do malicious downloads bypass integrated browser downloader, if so how does that happen?