Security News > 2024 > September

The "Llama" is freed: Winamp goes open source after 27 years
2024-09-25 14:33

The iconic Winamp media player has fulfilled a promise made in May to go open-source and has now published its complete source code on GitHub. [...]

Mozilla Faces Privacy Complaint for Enabling Tracking in Firefox Without User Consent
2024-09-25 14:12

Vienna-based privacy non-profit noyb (short for None Of Your Business) has filed a complaint with the Austrian data protection authority (DPA) against Firefox maker Mozilla for enabling a new...

PoC for critical SolarWinds Web Help Desk vulnerability released (CVE-2024-28987)
2024-09-25 14:07

Details about and proof-of-concept (PoC) exploit code for CVE-2024-28987, a recently patched SolarWinds Web Help Desk (WHD) vulnerability that could be exploited by unauthenticated attackers to...

Cybersecurity Researchers Warn of New Rust-Based Splinter Post-Exploitation Tool
2024-09-25 12:38

Cybersecurity researchers have flagged the discovery of a new post-exploitation red team tool called Splinter in the wild. Palo Alto Networks Unit 42 shared its findings after it discovered the...

The 5 Best VPN Extensions for Chrome in 2024
2024-09-25 12:00

Looking for the best Chrome VPN extensions to enhance your online security and privacy? Dive into our list of top-rated VPNs and find your best fit.

ChatGPT macOS Flaw Could've Enabled Long-Term Spyware via Memory Function
2024-09-25 11:47

A now-patched security vulnerability in OpenAI's ChatGPT app for macOS could have made it possible for attackers to plant long-term persistent spyware into the artificial intelligence (AI) tool's...

Expert Tips on How to Spot a Phishing Link
2024-09-25 11:20

Phishing attacks are becoming more advanced and harder to detect, but there are still telltale signs that can help you spot them before it's too late. See these key indicators that security...

New Windows Malware Locks Computer in Kiosk Mode
2024-09-25 11:00

Clever: A malware campaign uses the unusual method of locking users in their browser’s kiosk mode to annoy them into entering their Google credentials, which are then stolen by...

Agentic AI in SOCs: A Solution to SOAR's Unfulfilled Promises
2024-09-25 09:50

Security Orchestration, Automation, and Response (SOAR) was introduced with the promise of revolutionizing Security Operations Centers (SOCs) through automation, reducing manual workloads and...

Ivanti vTM auth bypass flaw exploited in attacks, CISA warns (CVE-2024-7593)
2024-09-25 09:41

CVE-2024-7593, a critical authentication bypass vulnerability affecting Ivanti Virtual Traffic Manager (vTM) appliances, is actively exploited by attackers. The confirmation comes from the...