Security News > 2024 > December

Microsoft fixes exploited zero-day (CVE-2024-49138)
2024-12-10 20:59

On December 2024 Patch Tuesday, Microsoft resolved 71 vulnerabilities in a variety of its products, including a zero-day (CVE-2024-49138) that’s been exploited by attackers in the wild to execute...

Microsoft holds last Patch Tuesday of the year with 72 gifts for admins
2024-12-10 20:48

Twas the night before Christmas, and all through the house, patching was done with the click of a mouse Microsoft hasn't added too much coal to the stocking this Patch Tuesday, with just 72 fixes,...

US sanctions Chinese cybersecurity company for firewall compromise, ransomware attacks
2024-12-10 20:34

The Department of the Treasury is sanctioning Chinese cybersecurity company Sichuan Silence, and one of its employees, Guan Tianfeng, for their roles in the April 2020 compromise of tens of...

WPForms bug allows Stripe refunds on millions of WordPress sites
2024-12-10 20:00

A vulnerability in WPForms, a WordPress plugin used in over 6 million websites, could allow subscriber-level users to issue arbitrary Stripe refunds or cancel subscriptions. [...]

Ivanti warns of maximum severity CSA auth bypass vulnerability
2024-12-10 19:40

Ivanti warned customers on Tuesday about a new maximum-severity authentication bypass vulnerability in its Cloud Services Appliance (CSA) solution. [...]

US military grounds entire Osprey tiltrotor fleet over safety concerns
2024-12-10 19:06

Boeing-Bell V-22 can't outfly its checkered past, it seems The US Navy, Air Force, and Marine Corps have grounded their fleet of Boeing-Bell-made Osprey V-22s on safety grounds.…

Windows 10 KB5048652 update fixes new motherboard activation bug
2024-12-10 18:45

Microsoft has released the KB5048652 cumulative update for Windows 10 22H2, which contains six fixes, including a fix that prevented Windows 10 from activating when you change a device's motherboard. [...]

Microsoft December 2024 Patch Tuesday fixes 1 exploited zero-day, 71 flaws
2024-12-10 18:33

Today is Microsoft's December 2024 Patch Tuesday, which includes security updates for 71 flaws, including one actively exploited zero-day vulnerability. [...]

Windows 11 KB5048667 & KB5048685 cumulative updates released
2024-12-10 18:19

Microsoft has released the Windows 11 KB5048667 and KB5048685 cumulative updates for versions 24H2 and 23H2 to fix security vulnerabilities and issues. [...]

OpenAI’s Sora: Everything You Need to Know
2024-12-10 18:15

ChatGPT Plus and Pro users now have access to Sora Turbo, intended to be faster and safer than the version shown in February.