Security News > 2024 > December

OpenWrt Sysupgrade flaw let hackers push malicious firmware images
2024-12-09 22:33

A flaw in OpenWrt's Attended Sysupgrade feature used to build custom, on-demand firmware images could have allowed for the distribution of malicious firmware packages. [...]

Ubisoft fixes Windows 11 24H2 conflicts causing game crashes
2024-12-09 20:34

Microsoft has now partially lifted a compatibility hold blocking the Windows 24H2 update on systems with some Ubisoft games after the French video game publisher has fixed bugs causing crashes,...

Radiant links $50 million crypto heist to North Korean hackers
2024-12-09 20:25

Radiant Capital now says that North Korean threat actors are behind the $50 million cryptocurrency heist that occurred after hackers breached its systems in an October 16 cyberattack. [...]

China's Salt Typhoon recorded top American officials' calls, says White House
2024-12-09 19:01

No word yet on who was snooped on. Any bets? Chinese cyberspies recorded "very senior" US political figures' calls, according to White House security boss Anne Neuberger.…

Outdated Google Workspace Sync blocks Windows 11 24H2 upgrades
2024-12-09 18:34

Microsoft now blocks the Windows 11 24H2 update on computers with outdated Google Workspace Sync installs because they're causing Outlook launch issues. [...]

Update your OpenWrt router! Security issue made supply chain attack possible
2024-12-09 18:34

A security issue that could have allowed attackers to serve malicious firmware images to users has been fixed by OpenWrt Project, the organization that helms the development of the popular Linux...

Black Basta Ransomware Evolves with Email Bombing, QR Codes, and Social Engineering
2024-12-09 17:44

The threat actors linked to the Black Basta ransomware have been observed switching up their social engineering tactics, distributing a different set of payloads such as Zbot and DarkGate since...

Cybercrime gang arrested after turning Airbnbs into fraud centers
2024-12-09 16:55

Eight members of an international cybercrime network that stole millions of Euros from victims and set up Airbnb fraud centers were arrested in Belgium and the Netherlands. [...]

Romanian energy supplier Electrica hit by ransomware attack
2024-12-09 16:38

Electrica Group, a key player in the Romanian electricity distribution and supply market, is investigating a ransomware attack that was still "in progress" earlier today. [...]

Crooks stole AWS credentials from misconfigured sites then kept them in open S3 bucket
2024-12-09 16:15

ShinyHunters-linked heist thought to have been ongoing since March Exclusive A massive online heist targeting AWS customers during which digital crooks abused misconfigurations in public websites...