Security News > 2024 > December

Attackers actively exploiting flaw(s) in Cleo file transfer software (CVE-2024-50623)
2024-12-10 13:24

Attackers are exploiting a vulnerability (CVE-2024-50623) in file transfer software by Cleo – LexiCo, VLTransfer, and Harmony – to gain access to organizations’ systems, Huntress researchers...

Dashlane vs 1Password (2024): Which Password Manager Is Better?
2024-12-10 13:00

Dashlane or 1Password? This guide compares the features, security, and pricing of both password managers to help you decide which one is right for you.

Microsoft 365 outage takes down Office web apps, admin center
2024-12-10 12:47

Microsoft is investigating a widespread and ongoing Microsoft 365 outage impacting Office web apps and the Microsoft 365 admin center. [...]

Heart surgery device maker's security bypassed, data encrypted and stolen
2024-12-10 12:30

Sounds like th-aorta get this sorted quickly A manufacturer of devices used in heart surgeries says it's dealing with "a cybersecurity incident" that bears all the hallmarks of a ransomware attack.…

Full-Face Masks to Frustrate Identification
2024-12-10 12:06

This is going to be interesting. It’s a video of someone trying on a variety of printed full-face masks. They won’t fool anyone for long, but will survive casual scrutiny. And they’re cheap and...

The Future of Network Security: Automated Internal and External Pentesting
2024-12-10 11:50

In today’s rapidly evolving threat landscape, safeguarding your organization against cyberattacks is more critical than ever. Traditional penetration testing (pentesting), while effective, often...

Phone Phishing Gang Busted: Eight Arrested in Belgium and Netherlands
2024-12-10 11:19

Belgian and Dutch authorities have arrested eight suspects in connection with a "phone phishing" gang that primarily operated out of the Netherlands with an aim to steal victims' financial data...

Chinese hackers use Visual Studio Code tunnels for remote access
2024-12-10 11:00

Chinese hackers targeting large IT service providers in Southern Europe were seen abusing Visual Studio Code (VSCode) tunnels to maintain persistent access to compromised systems. [...]

Hackers Weaponize Visual Studio Code Remote Tunnels for Cyber Espionage
2024-12-10 11:00

A suspected China-nexus cyber espionage group has been attributed to an attacks targeting large business-to-business IT service providers in Southern Europe as part of a campaign codenamed...

21 years since its inception, GNU Shepherd 1.0.0 is released
2024-12-10 10:54

GNU Shepherd is a service manager designed to oversee the system’s daemons. It functions both as an “init” system (PID 1) and as a tool for unprivileged users to manage per-user daemons. GNU...