Endpoint malware attacks decline as campaigns spread wider

In Q2 2023, 95% of malware now arrives over encrypted connections, endpoint malware volumes are decreasing despite campaigns growing more widespread, ransomware detections are declining amid a rise in double-extortion attacks, and older software vulner… Continue reading Endpoint malware attacks decline as campaigns spread wider

New Supermicro BMC Vulnerabilities Could Expose Many Servers to Remote Attacks

Supermicro has released BMC IPMI firmware updates to address multiple vulnerabilities impacting select motherboard models.
The post New Supermicro BMC Vulnerabilities Could Expose Many Servers to Remote Attacks appeared first on SecurityWeek.
Continue reading New Supermicro BMC Vulnerabilities Could Expose Many Servers to Remote Attacks

Critical Trend Micro vulnerability exploited in the wild (CVE-2023-41179)

Trend Micro has fixed a critical zero-day vulnerability (CVE-2023-41179) in several of its endpoint security products for enterprises that has been spotted being exploited in the wild. About CVE-2023-41179 The nature of the flaw hasn’t been revea… Continue reading Critical Trend Micro vulnerability exploited in the wild (CVE-2023-41179)

Intel Launches New Attestation Service as Part of Trust Authority Portfolio

Intel announces general availability of attestation service that is part of Trust Authority, a new portfolio of security software and services.
The post Intel Launches New Attestation Service as Part of Trust Authority Portfolio appeared first on Secur… Continue reading Intel Launches New Attestation Service as Part of Trust Authority Portfolio

Trend Micro Patches Exploited Zero-Day Vulnerability in Endpoint Security Products

Trend Micro has patched CVE-2023-41179, an Apex One zero-day code execution vulnerability that has been exploited in attacks. 
The post Trend Micro Patches Exploited Zero-Day Vulnerability in Endpoint Security Products appeared first on SecurityWeek.
Continue reading Trend Micro Patches Exploited Zero-Day Vulnerability in Endpoint Security Products

Google Extends Chromebook Lifespan, Promises 10 Years of Automatic Updates

Google Chromebooks released from 2021 and onwards will receive automatic updates, including security patches, for 10 years.
The post Google Extends Chromebook Lifespan, Promises 10 Years of Automatic Updates appeared first on SecurityWeek.
Continue reading Google Extends Chromebook Lifespan, Promises 10 Years of Automatic Updates

Emsisoft Tells Users to Update Products, Reboot Systems Due to Certificate Mishap

Emsisoft urges its users to update anti-malware and other security products after signing them with an improperly issued digital certificate.
The post Emsisoft Tells Users to Update Products, Reboot Systems Due to Certificate Mishap appeared first on S… Continue reading Emsisoft Tells Users to Update Products, Reboot Systems Due to Certificate Mishap