Security News > 2024 > November

Microsoft just killed the Windows 10 Beta Channel again
2024-11-14 23:39

Five months after reviving it in June, ​Microsoft has shut down the Windows 10 Beta Channel and will move all enrolled Windows Insiders to the Release Preview Channel. [...]

Fraud network uses 4,700 fake shopping sites to steal credit cards
2024-11-14 22:45

A financially motivated Chinese threat actor dubbed "SilkSpecter" is using thousands of fake online stores to steal the payment card details of online shoppers in the U.S. and Europe. [...]

Fortinet patches VPN app flaw that could give rogue users, malware a privilege boost
2024-11-14 22:22

Plus a bonus hard-coded local API key A now-patched, high-severity bug in Fortinet's FortiClient VPN application potentially allows a low-privilege rogue user or malware on a vulnerable Windows...

CISA warns of more Palo Alto Networks bugs exploited in attacks
2024-11-14 22:01

CISA warned today that two more critical security vulnerabilities in Palo Alto Networks' Expedition migration tool are now actively exploited in attacks. [...]

New Glove infostealer malware bypasses Chrome’s cookie encryption
2024-11-14 20:47

​New Glove Stealer information-stealing malware can bypass Google Chrome's Application-Bound (App-Bound) encryption to steal browser cookies. [...]

Cybercriminal devoid of boundaries gets 10-year prison sentence
2024-11-14 20:27

Serial extortionist of medical facilities stooped to cavernous lows in search of small payouts A rampant cybercrook and repeat attacker of medical facilities in the US is being sentenced to a...

Experts Uncover 70,000 Hijacked Domains in Widespread 'Sitting Ducks' Attack Scheme
2024-11-14 17:36

Multiple threat actors have been found taking advantage of an attack technique called Sitting Ducks to hijack legitimate domains for using them in phishing attacks and investment fraud schemes for...

Hacker gets 10 years in prison for extorting US healthcare provider
2024-11-14 16:58

Robert Purbeck, a 45-year-old man from Idaho, has been sentenced to ten years in prison for hacking at least 19 organizations in the United States, stealing the personal data of more than 132,000...

ChatGPT allows access to underlying sandbox OS, “playbook” data
2024-11-14 16:08

OpenAI's containerized ChatGPT environment is open to limited yet extensive access to core instructions while allowing arbitrary file uploads and command execution within the isolated sandbox. [...]

The true (and surprising) cost of forgotten passwords
2024-11-14 15:01

Password resets are more expensive for your organization than you may realize. Learn more from Specops Software on why password resets are so expensive and how a self-service password reset...