Twitter ends free SMS 2FA: Here’s how you can protect your account nowTwitter’s ditching of free text-message authentication doesn’t mean that you should forgo using 2FA....
Month: March 2023
Acropalypse flaw in Google Pixel’s Markup tool allowed the recovery of edited images
Acropalypse flaw in Google Pixel’s Markup tool allowed the recovery of edited imagesThe Acropalypse flaw in the Markup tool of Google Pixel allowed the partial recovery...
Security response policy
Security response policyPURPOSE The purpose of this Security Response Policy from TechRepublic Premium is to outline the security incident response processes which must be followed. This...
Validated Storage for Commvault Backup & Recovery
Validated Storage for Commvault Backup & RecoveryThe Commvault Backup & Recovery Software suite is comprised of several individual component services. The component responsible for moving and...
BECs double in 2022, overtaking ransomware
BECs double in 2022, overtaking ransomwareA look at 4th quarter 2022, data suggests that new threat surfaces notwithstanding, low-code cybersecurity business email compromises including phishing, as...
File-sharing site Zippyshare shutting down after 17 years
File-sharing site Zippyshare shutting down after 17 yearsFile-sharing site Zippyshare has announced they are shutting down the site by the end of March 2023 after announcing...
Hackers target .NET developers with malicious NuGet packages
Hackers target .NET developers with malicious NuGet packagesThreat actors are targeting and infecting .NET developers with cryptocurrency stealers delivered through the NuGet repository and impersonating multiple...
General Bytes Bitcoin ATMs hacked using zero-day, $1.5M stolen
General Bytes Bitcoin ATMs hacked using zero-day, $1.5M stolenLeading Bitcoin ATM maker General Bytes disclosed that hackers stole cryptocurrency from the company and its customers using...
Windows 11 bug warns Local Security Authority protection is off
Windows 11 bug warns Local Security Authority protection is offWindows 11 users report seeing widespread Windows Security warnings that Local Security Authority (LSA) Protection has been...
Ferrari discloses data breach after receiving ransom demand
Ferrari discloses data breach after receiving ransom demandFerrari has disclosed a data breach following a ransom demand received after attackers gained access to some of the company's...
Microsoft Teams goes 3D: Meet your animated avatar
Microsoft Teams goes 3D: Meet your animated avatarEXECUTIVE SUMMARY: Sometimes, there are valid reasons to turn your camera off during a Zoom or Teams meeting. For...
Performance of VMware NSX Gateway Firewall on 3rd Gen Intel Xeon Scalable Processors
Performance of VMware NSX Gateway Firewall on 3rd Gen Intel Xeon Scalable ProcessorsIntroduction Over the past year, pandemic-related uncertainties, the rise of remote work, and a...
Security Designed for Cloud-Native Architecture
Security Designed for Cloud-Native ArchitectureSecurity Designed for Cloud-Native Architecture It is 2023 and organizations are continuing to migrate workloads to public clouds, modernize their applications and...
Cisco IP Phone 6800, 7800, and 8800 Series Web UI Vulnerabilities
Cisco IP Phone 6800, 7800, and 8800 Series Web UI VulnerabilitiesMultiple vulnerabilities in the web-based management interface of certain Cisco IP Phones could allow an unauthenticated,...
Why CISOs Should Prioritize Extended Detection & Response (XDR)
Why CISOs Should Prioritize Extended Detection & Response (XDR)In my role as General Manager of the VMware Security Business Unit, I have the privilege of speaking...
Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers Vulnerabilities
Cisco Small Business RV016, RV042, RV042G, RV082, RV320, and RV325 Routers VulnerabilitiesMultiple vulnerabilities in the web-based management interface of Cisco Small Business RV016, RV042, RV042G, RV082,...
Drupal core – Moderately critical – Access bypass – SA-CORE-2023-004
Drupal core - Moderately critical - Access bypass - SA-CORE-2023-004Project: Drupal coreDate: 2023-March-15Security risk: Moderately critical 14∕25 AC:Complex/A:Admin/CI:All/II:All/E:Theoretical/TD:UncommonVulnerability: Access bypassAffected versions: =8.0.0 =9.5.0 =10.0.0 Description: Drupal...
Drupal core – Moderately critical – Information Disclosure – SA-CORE-2023-002
Drupal core - Moderately critical - Information Disclosure - SA-CORE-2023-002Project: Drupal coreDate: 2023-March-15Security risk: Moderately critical 14∕25 AC:None/A:None/CI:Some/II:None/E:Theoretical/TD:DefaultVulnerability: Information DisclosureAffected versions: >=8.0.0 =9.5.0 =10.0.0 Description: The...
Drupal core – Moderately critical – Information Disclosure – SA-CORE-2023-003
Drupal core - Moderately critical - Information Disclosure - SA-CORE-2023-003Project: Drupal coreDate: 2023-March-15Security risk: Moderately critical 13∕25 AC:None/A:None/CI:Some/II:None/E:Theoretical/TD:UncommonVulnerability: Information DisclosureAffected versions: >=8.0.0 =9.5.0 =10.0.0 Description: The...
Unveiling the Evolution of Royal Ransomware
Unveiling the Evolution of Royal RansomwareWhile the evolution of ransomware techniques is to be expected, the speed at which the Royal Ransomware Group has been able...
VMware and Pwn2Own Vancouver 2023
VMware and Pwn2Own Vancouver 2023Greetings from VMware Security Response Center!! We’re excited to announce that VMware will be returning to Pwn2Own 2023 hosted on March 22nd...
How Russia’s Ukraine War Disrupted the Cybercrime Ecosystem
How Russia's Ukraine War Disrupted the Cybercrime EcosystemWar Upended Russian Brotherhood, Supply, Demand and Pricing, Says Intel AnalystRussia's invasion of Ukraine in 2022 threw Russia's cybercrime...
Fresh Vishing Campaign Targeting South Korean Users
Fresh Vishing Campaign Targeting South Korean UsersVictims Lured Using Loan Offer with a Low Interest RateCriminal hackers are targeting South Koreans with an Android Trojan that...
Lawsuit Against Clinic Seeks Long List of Cyber Improvements
Lawsuit Against Clinic Seeks Long List of Cyber ImprovementsProposed Class Action Filed Over Data Exfiltration Breach Affecting Nearly 442,000An Alabama cardiovascular clinic is facing a proposed...
Hacker Exploits Months-Old Bug to Steal Crypto From ATMs
Hacker Exploits Months-Old Bug to Steal Crypto From ATMsNow-Patched Bug Allowed Thief to Remotely Steal User Passwords, Private KeysBitcoin ATM manufacturer General Bytes suspended its cloud...
Emotet Rises Again: Evades Macro Security via OneNote Attachments
Emotet Rises Again: Evades Macro Security via OneNote AttachmentsThe notorious Emotet malware, in its return after a short hiatus, is now being distributed via Microsoft OneNote email attachments in...
Researchers Shed Light on CatB Ransomware’s Evasion Techniques
Researchers Shed Light on CatB Ransomware's Evasion TechniquesThe threat actors behind the CatB ransomware operation have been observed using a technique called DLL search order hijacking to evade...
New Cyber Platform Lab 1 Decodes Dark Web Data to Uncover Hidden Supply Chain Breaches
New Cyber Platform Lab 1 Decodes Dark Web Data to Uncover Hidden Supply Chain BreachesThis article has not been generated by ChatGPT. 2022 was the year...
Mispadu Banking Trojan Targets Latin America: 90,000+ Credentials Stolen
Mispadu Banking Trojan Targets Latin America: 90,000+ Credentials StolenA banking trojan dubbed Mispadu has been linked to multiple spam campaigns targeting countries like Bolivia, Chile, Mexico, Peru, and...
New DotRunpeX Malware Delivers Multiple Malware Families via Malicious Ads
New DotRunpeX Malware Delivers Multiple Malware Families via Malicious AdsA new piece of malware dubbed dotRunpeX is being used to distribute numerous known malware families such as Agent Tesla, Ave...


















