Microsoft Flags Ransomware Problems on Apple macOS Platform

Security researchers at Microsoft are flagging ransomware attacks on Appleā€™s flagship macOS platform, warning that financially motivated cybercriminals are abusing legitimate macOS functionalities to exploit vulnerabilities, evade defenses, or coerce u… Continue reading Microsoft Flags Ransomware Problems on Apple macOS Platform

Netwrix Acquires Remediant for PAM Technology

Data security software vendor Netwrix has acquired Remediant, an early-stage startup working on technology in the PAM (privileged access management) category.
Financial terms of the acquisition were not disclosed. 
read more Continue reading Netwrix Acquires Remediant for PAM Technology

Microsoft Patches Azure Cross-Tenant Data Access Flaw

Microsoft has silently fixed an important-severity security flaw in its Azure Container Service (ACS) after an external researcher warned that a buggy feature allowed cross-tenant network bypass attacks.
read more Continue reading Microsoft Patches Azure Cross-Tenant Data Access Flaw

LastPass Says Password Vault Data Stolen in Data Breach

Password management firm LastPass says the hackers behind an August data breach stole a massive stash of customer data, including password vault data that could be exposed by brute-forcing or guessing master passwords.
read more Continue reading LastPass Says Password Vault Data Stolen in Data Breach

FoxIt Patches Code Execution Flaws in PDF Tools

Foxit Software has rolled out a critical-severity patch to cover a dangerous remote code execution flaw in its flagship PDF Reader and PDF Editor products.
read more Continue reading FoxIt Patches Code Execution Flaws in PDF Tools

US Food Companies Warned of BEC Attacks Stealing Food Product Shipments

The Federal Bureau of Investigation (FBI), the Food and Drug Administration Office of Criminal Investigations (FDA OCI), and the US Department of Agriculture (USDA) are raising alarm on business email compromise (BEC) attacks leading to the theft of sh… Continue reading US Food Companies Warned of BEC Attacks Stealing Food Product Shipments

Adobe Patches 38 Flaws in Enterprise Software Products

After skipping last month, Adobe returned to its scheduled Patch Tuesday cadence with the release of fixes for at least 38 vulnerabilities in multiple enterprise-facing products.
The San Jose, California software maker said the flaws could expose users… Continue reading Adobe Patches 38 Flaws in Enterprise Software Products

VMware Patches VM Escape Flaw Exploited at Geekpwn Event

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine escape bug exploited at the GeekPwn 2022 hacking challenge.
read more Continue reading VMware Patches VM Escape Flaw Exploited at Geekpwn Event

NSA Outs Chinese Hackers Exploiting Citrix Zero-Day

Virtualization technology giant Citrix on Tuesday scrambled out an emergency patch to cover a zero-day flaw in its networking product line and warned that a Chinese hacking group has already been caught exploiting the vulnerability.
read more Continue reading NSA Outs Chinese Hackers Exploiting Citrix Zero-Day