Security News > 2024 > October

Senator accuses sloppy domain registrars of aiding Russian disinfo campaigns
2024-10-27 15:44

Also, Change Healthcare sets a record, cybercrime cop suspect indicted, a new Mallox decryptor, and more in brief Senate intelligence committee chair Mark Warner (D-VA) is demanding to know why,...

Fog ransomware targets SonicWall VPNs to breach corporate networks
2024-10-27 14:17

Fog and Akira ransomware operators have increased their exploitation efforts of CVE-2024-40766, a critical access control flaw that allows unauthorized access to resources on the SSL VPN feature...

Week in review: Fortinet patches critical FortiManager 0-day, VMware fixes vCenter Server RCE
2024-10-27 09:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Fortinet releases patches for publicly undisclosed critical FortiManager vulnerability In the last...

New Cisco ASA and FTD features block VPN brute-force password attacks
2024-10-26 14:31

Cisco has added new security features that significantly mitigate brute-force and password spray attacks on Cisco ASA and Firepower Threat Defense (FTD), helping protect the network from breaches...

New Windows Driver Signature bypass allows kernel rootkit installs
2024-10-26 12:28

Attackers can downgrade Windows kernel components to bypass security features such as Driver Signature Enforcement and deploy rootkits on fully patched systems. [...]

Over 70 zero-day flaws get hackers $1 million at Pwn2Own Ireland
2024-10-26 09:42

The fourth day of Pwn2Own Ireland 2024 marked the end of the hacking competition with more than $1 million in prizes for over 70 unique zero-day vulnerabilities in fully patched devices. [...]

Notorious Hacker Group TeamTNT Launches New Cloud Attacks for Crypto Mining
2024-10-26 09:06

The infamous cryptojacking group known as TeamTNT appears to be readying for a new large-scale campaign targeting cloud-native environments for mining cryptocurrencies and renting out breached...

Four REvil Ransomware Members Sentenced in Rare Russian Cybercrime Convictions
2024-10-26 08:34

Four members of the now-defunct REvil ransomware operation have been sentenced to several years in prison in Russia, marking one of the rare instances where cybercriminals from the country have...

Worker surveillance must comply with credit reporting rules
2024-10-26 05:30

US Consumer Financial Protection Bureau demands transparency, accountability from sellers of employee metrics The US Consumer Financial Protection Bureau on Thursday published guidance advising...

CERT-UA Identifies Malicious RDP Files in Latest Attack on Ukrainian Entities
2024-10-26 04:06

The Computer Emergency Response Team of Ukraine (CERT-UA) has detailed a new malicious email campaign targeting government agencies, enterprises, and military entities. "The messages exploit the...