Privilege Escalation Flaw Haunts VMware Tools

Virtualization technology software giant VMware on Tuesday released patches to fix an important-severity security flaw in the VMware Tools suite of utilities.
The vulnerability, tracked as CVE-2022-31676, could be exploited by attackers to escalate pri… Continue reading Privilege Escalation Flaw Haunts VMware Tools

GitLab Patches Critical Remote Code Execution Vulnerability

DevOps platform GitLab has issued patches for a critical remote code execution vulnerability impacting its GitLab Community Edition (CE) and Enterprise Edition (EE) releases.
Tracked as CVE-2022-2884 (CVSS 9.9/10 severity), the security flaw can be exp… Continue reading GitLab Patches Critical Remote Code Execution Vulnerability

Novant Health Says Malformed Tracking Pixel Exposed Health Data to Meta

Healthcare services provider Novant Health has sent notifications to more than 1.3 million individuals that their protected health information (PHI) might have been inadvertently exposed to Facebook parent company Meta.
read more Continue reading Novant Health Says Malformed Tracking Pixel Exposed Health Data to Meta

Fake DDoS Protection Prompts on Hacked WordPress Sites Deliver RATs

Website security firm Sucuri is warning of an increase in fake distributed denial-of-service (DDoS) protection notifications that lead to the delivery of malware.
DDoS protection notifications are web pages that the browser serves to users when checks … Continue reading Fake DDoS Protection Prompts on Hacked WordPress Sites Deliver RATs

FBI Warns of Proxies and Configurations Used in Credential Stuffing Attacks

The Federal Bureau of Investigation (FBI) has raised an alarm for cybercriminals using proxies and configurations to hide and automate credential stuffing attacks against companies in the United States.
read more Continue reading FBI Warns of Proxies and Configurations Used in Credential Stuffing Attacks

TXOne Networks Scores $70M Series B Investment

TXOne Networks, a joint venture between cybersecurity firm Trend Micro and industrial networking solutions provider Moxa, has banked $70 million in new venture capital funding.
The company, which maintains dual headquarters in Texas and Taiwan, said th… Continue reading TXOne Networks Scores $70M Series B Investment

Apple Patches New macOS, iOS Zero-Days

Apple on Wednesday rolled out emergency patches for a pair of already exploited zero-day vulnerabilities in its flagship macOS and iOS platforms.
Apple confirmed in-the-wild exploitation of the vulnerabilities in separate advisories warning about code … Continue reading Apple Patches New macOS, iOS Zero-Days