NSO Group used WhatsApp exploits after the messaging app sued the spyware developer, court filing says

The filing also suggests that customers have a minimal role in operating the spyware, in an apparent contradiction of past NSO Group claims.

The post NSO Group used WhatsApp exploits after the messaging app sued the spyware developer, court filing says appeared first on CyberScoop.

Continue reading NSO Group used WhatsApp exploits after the messaging app sued the spyware developer, court filing says

Inside console security: How innovations shape future hardware protection

In this Help Net Security interview, security researchers Specter and ChendoChap discuss gaming consoles’ unique security model, highlighting how it differs from other consumer devices. They also share their thoughts on how advancements in consol… Continue reading Inside console security: How innovations shape future hardware protection

Exploited: Cisco, SharePoint, Chrome vulnerabilities

Threat actors have been leveraging zero and n-day vulnerabilities in Cisco security appliances (CVE-2024-20481), Microsoft Sharepoint (CVE-2024-38094), and Google’s Chrome browser (CVE-2024-4947). CVE-2024-20481 (Cisco ASA/FTD) In the past few da… Continue reading Exploited: Cisco, SharePoint, Chrome vulnerabilities

Roundcube XSS flaw exploited to steal credentials, email (CVE-2024-37383)

Attackers have exploited an XSS vulnerability (CVE-2024-37383) in the Roundcube Webmail client to target a governmental organization of a CIS country, Positive Technologies (PT) analysts have discovered. The vulnerability was patched in May 2024, in Ro… Continue reading Roundcube XSS flaw exploited to steal credentials, email (CVE-2024-37383)