Security News > 2024 > November

Microsoft plans to boot security vendors out of the Windows kernel
2024-11-19 18:43

Microsoft has announced the Windows Resiliency Initiative, aimed at avoiding a repeat of the prolonged worldwide IT outage caused by a buggy CrowdStrike update that took down millions of Windows...

D-Link urges users to retire VPN routers impacted by unfixed RCE flaw
2024-11-19 17:58

D-Link is warning customers to replace end-of-life VPN router models after a critical unauthenticated, remote code execution vulnerability was discovered that will not be fixed on these devices. [...]

Microsoft now testing hotpatch on Windows 11 24H2 and Windows 365
2024-11-19 17:37

​Microsoft announced today that hotpatching is now also available in preview on Windows 365 and Windows 11 Enterprise 24H2 client devices. [...]

Helldown ransomware exploits Zyxel VPN flaw to breach networks
2024-11-19 17:00

The new 'Helldown' ransomware operation is believed to target vulnerabilities in Zyxel firewalls to breach corporate networks, allowing them to steal data and encrypt devices. [...]

Windows 365 Link Cloud PC: Connect securely to Windows 365
2024-11-19 16:53

Microsoft unveiled Windows 365 Link, their first purpose-built Cloud PC device for instant, secure connection to Windows 365. Sign-in screen with USB security key option (Source: Microsoft)...

Cross-IdP impersonation bypasses SSO protections
2024-11-19 16:17

Cross-IdP impersonation – a technique that enables attackers to hijack the single sign-on (SSO) process to gain unauthorized access to downstream software-as-a-service (SaaS) applications without...

The 6 Best Free Antivirus Software Providers for Mac in 2024
2024-11-19 15:54

Security-conscious Mac users may need more protection than their built-in tools provide. Learn about the extra features and functionality offered by the best free antivirus software providers for...

Botnet fueling residential proxies disrupted in cybercrime crackdown
2024-11-19 15:34

The Ngioweb botnet, which supplies most of the 35,000 bots in the cybercriminal NSOCKS proxy service, is being disrupted as security companies block traffic to and from the two networks. [...]

Palo Alto Networks tackles firewall-busting zero-days with critical patches
2024-11-19 15:29

Amazing that these two bugs got into a production appliance, say researchers Palo Alto Networks (PAN) finally released a CVE identifier and patch for the zero-day exploit that caused such a fuss...

New Windows 11 recovery tool to let admins remotely fix unbootable devices
2024-11-19 15:09

Microsoft is working on a new Windows "Quick Machine Recovery" feature that will allow IT administrators to use Windows Update "targeted fixes" to remotely fix systems rendered unbootable. [...]