Security News > 2024 > October

700K+ DrayTek routers are sitting ducks on the internet, open to remote hijacking
2024-10-02 21:33

With 14 serious security flaws found, what a gift for spies and crooks Fourteen bugs in DrayTek routers — including one critical remote-code-execution flaw that received a perfect 10 out of 10...

Two simple give-me-control security bugs found in Optigo network switches used in critical manufacturing
2024-10-02 20:39

Poor use of PHP include() strikes again Two trivial but critical security holes have been found in Optigo's Spectra Aggregation Switch, and so far no patch is available.…

FIN7 hackers launch deepfake nude “generator” sites to spread malware
2024-10-02 20:01

The notorious APT hacking group known as FIN7 launched a network of fake AI-powered deepnude generator sites to infect visitors with information-stealing malware. [...]

Critical Ivanti RCE flaw with public exploit now used in attacks
2024-10-02 18:55

CISA warned today that a critical Ivanti vulnerability that can let threat actors gain remote code execution on vulnerable Endpoint Manager (EPM) appliances is now actively exploited in attacks. [...]

Google Cloud Expands Confidential Computing Portfolio
2024-10-02 18:23

Users of Google Cloud’s virtual machines can now get in-house attestation for VMs that offer AMD encrypted virtualization.

Fake browser updates spread updated WarmCookie malware
2024-10-02 18:22

A new 'FakeUpdate' campaign targeting users in France leverages compromised websites to show fake browser and application updates that spread a new version of the WarmCookie malware. [...]

Fake Trading Apps Target Victims Globally via Apple App Store and Google Play
2024-10-02 16:54

A large-scale fraud campaign leveraged fake trading apps published on the Apple App Store and Google Play Store, as well as phishing sites, to defraud victims, per findings from Group-IB. The...

Microsoft Office 2024 now available for Windows and macOS users
2024-10-02 16:43

Microsoft has released Office 2024 for small businesses and consumers who want a standalone version without a Microsoft 365 subscription. [...]

How to Balance Data Storage, Features, and Cost in Security Applications
2024-10-02 16:00

Security applications can now analyze and detect trends and anomalies in vast seas of information. But how much is enough? And how much is too much information? The more you need to store and the...

10 Must-Read Books on Cybersecurity
2024-10-02 16:00

In a world fraught with cyberattacks and privacy violations in both business and individual spaces, cybersecurity remains a veritable tool for curtailing these attacks and improving privacy...