Security News > 2024 > November

Apple Patches Two Zero-Day Attack Vectors
2024-11-21 19:55

Threat actors exploited two vulnerabilities in Intel-based machines. Google’s Threat Analysis Group discovered the flaws.

Over 2,000 Palo Alto firewalls hacked using recently patched bugs
2024-11-21 19:46

Hackers have already compromised thousands of Palo Alto Networks firewalls in attacks exploiting two recently patched zero-day vulnerability vulnerabilities. [...]

DARPA-backed voting system for soldiers abroad savaged
2024-11-21 19:27

VotingWorks, developer of the system, disputes critics' claims An electronic voting project backed by DARPA – Uncle Sam's boffinry nerve center – to improve the process of absentee voting for...

Microsoft pulls WinAppSDK update breaking Windows 10 app uninstalls
2024-11-21 18:58

Microsoft has confirmed that, since November 12, some Windows 10 users have been unable to update or uninstall packaged applications like Microsoft Teams. [...]

CISA says BianLian ransomware now focuses only on data theft
2024-11-21 18:38

The BianLian ransomware operation has shifted its tactics, becoming primarily a data theft extortion group, according to an updated advisory from the U.S. Cybersecurity & Infrastructure Security...

Chinese ship casts shadow over Baltic subsea cable snipfest
2024-11-21 17:20

Danish military confirms it is monitoring as Swedish police investigate. Cloudflare says impact was 'minimal' The Danish military has confirmed it is tracking a Chinese ship that is under...

Microsoft disrupts ONNX phishing-as-a-service infrastructure
2024-11-21 17:00

​Microsoft has seized 240 domains used by customers of ONNX, a phishing-as-a-service (PhaaS) platform, to target companies and individuals across the United States and worldwide since at least 2017. [...]

Warning: Over 2,000 Palo Alto Networks Devices Hacked in Ongoing Attack Campaign
2024-11-21 16:22

As many as 2,000 Palo Alto Networks devices are estimated to have been compromised as part of a campaign abusing the newly disclosed security flaws that have come under active exploitation in the...

US charges five alleged members of Scattered Spider gang
2024-11-21 16:00

Law enforcement unsealed criminal charges against five alleged members of Scattered Spider, who allegedly targeted employees of companies nationwide with phishing text messages and then used the...

#US
Chinese APT Gelsemium Targets Linux Systems with New WolfsBane Backdoor
2024-11-21 15:50

The China-aligned advanced persistent threat (APT) actor known as Gelsemium has been observed using a new Linux backdoor dubbed WolfsBane as part of cyber attacks likely targeting East and...