Security News > 2021 > May

Windows 10 cumulative updates KB5003169 & KB5003173 released
2021-05-11 18:02

As part of the May Patch cycle, Microsoft is rolling out a new cumulative update for all supported version of Windows. The cumulative update with security fixes is rolling out to PCs with October 2020 Update and May 2020 Update.

Fake Chrome App Anchors Rapidly Worming ‘Smish’ Cyberattack
2021-05-11 18:01

A new Android malware that impersonates the Google Chrome app has spread to hundreds of thousands of people in the last few weeks, according to researchers. The fake app is being used as part of a sophisticated hybrid cyberattack campaign that also uses mobile phishing to steal credentials.

Microsoft May 2021 Patch Tuesday fixes 55 flaws, 3 zero-days
2021-05-11 17:28

Today is Microsoft's May 2021 Patch Tuesday, and with it comes three zero-day vulnerabilities, so Windows admins will be rushing to apply updates. With today's update, Microsoft has fixed 55 vulnerabilities, with four classified as Critical, 50 as Important, and one as Moderate.

The many sides of DarkSide, the group behind the Colonial Pipeline ransomware attack
2021-05-11 17:27

The ransomware group that attacked Colonial Pipeline has in the past tried to donate some of its profits to charity in a twisted take on the tale of Robin Hood. DarkSide has garnered some publicity lately, and not especially wanted, after the FBI and others blamed the group for the recent ransomware attack against Colonial Pipeline, which forced the company to take down its operations.

Panda Stealer targets cryptocurrency wallets and VPN credentials via malicious XLS attachment
2021-05-11 17:05

Bad actors put a new twist on an existing piece of malware to steal private keys for cryptocurrency accounts and other account credentials, according to analysis from Trend Micro. Panda Stealer uses a fileless approach and looks for private keys and records of previous transactions from cryptocurrency wallets including Dash, Bytecoin, Litecoin and Ethereum, according to Trend Micro.

Microsoft Defender ATP now secures networked Linux, macOS devices
2021-05-11 17:01

Microsoft has added support for identifying and assessing the security configurations of Linux and macOS endpoints on enterprise networks using Microsoft Defender for Endpoint. The secure configuration assessment feature is now in public preview, and it has expanded to include macOS and Linux devices after initially only supporting Windows 10 and Windows Server devices.

A Closer Look at the DarkSide Ransomware Gang
2021-05-11 16:37

Here's a closer look at the DarkSide cybercrime gang, as seen through their negotiations with a recent U.S. victim that earns $15 billion in annual revenue. "We are apolitical, we do not participate in geopolitics, do not need to tie us with a defined government and look for other our motives [sic]," reads an update to the DarkSide Leaks blog.

Adobe fixes Reader zero-day vulnerability exploited in the wild
2021-05-11 16:28

Adobe has released a massive Patch Tuesday security update release that fixes vulnerabilities in twelve different applications, including one actively exploited vulnerability Adobe Reader. Of particular concern, Adobe warns that one of the Adobe Acrobat and Reader vulnerabilities tracked as CVE-2021-28550 has been exploited in the wild in limited attacks against Adobe Reader on Windows devices.

Shifting Threats in a Changed World: Edge, IoT and Vaccine Fraud
2021-05-11 16:08

As the world begins to open up and we crawl toward a brighter future, people are going to be looking for things to do and places to go - so we also expect to see social-engineering attacks start using things like travel and vacation deals to hook people. With many companies continuing to allow at least some of their employees to work remotely with no stipulated end date, security leaders have to stay abreast of the latest threats regarding edge access and browsers.

UK's Computer Misuse Act to be reviewed, says Home Secretary as she condemns ransomware payoffs
2021-05-11 16:00

Priti Patel has promised a government review of the UK's 30-year-old Computer Misuse Act "This year" as well as condemning companies that buy off ransomware criminals. "As part of ensuring that we have the right tools and mechanisms to detect, disrupt and deter our adversaries, I believe now is the right time to undertake a formal review of the Computer Misuse Act," said Patel.