Security News

South Korea kills ActiveX-based government digital certificate service
2020-12-10 04:31

In 1965, Gordon Moore published a short informal paper, Cramming more components onto integrated circuits. Based on not much more but these few data points and his knowledge of silicon chip development - he was head of R&D at Fairchild Semiconductors, the company that was to seed Silicon Valley - he said that for the next decade, component counts by area could double every year.

TrickBot Adds ActiveX Control, Hides Dropper in Images
2020-03-02 17:14

The TrickBot banking trojan has gotten trickier, with the addition of a Windows 10 ActiveX control to execute malicious macros in boobytrapped documents. This creates and executes the OSTAP JavaScript downloader, which acts as a dropper for the TrickBot payload, without user interaction after they click the "Enable macros" button.

Siemens Warns of Security Risks Associated With Use of ActiveX
2020-01-17 14:44

Siemens this week addressed several vulnerabilities and warned customers about the security risks associated with the use of ActiveX in industrial products. ActiveX has been known to pose serious security risks and it's currently only supported by Microsoft on Internet Explorer - ActiveX is not supported by other browsers such as Chrome, Safari or Firefox.

Critical Vulnerabilities Plague South Korean ActiveX Controls
2019-05-22 15:47

Tens of very basic but Critical vulnerabilities were found in 10 South Korean ActiveX controls as part of a short research project, security researchers with Risk Based Security say.  read more

Flash zero-day... leveraging ActiveX…embedded in Office Doc...BINGO!
2018-12-05 19:34

It's like a greatest hits album of terrible security policies Stop us if you've heard this one: A Flash zero-day vulnerability is being actively targeted in the wild.…

Recent Andariel Group ActiveX Attacks Point to Future Targets
2018-07-17 18:27

Changes in the group's script may indicate that the hackers may start using attack vectors other than ActiveX.

North Korean Hackers Launch New ActiveX Attacks
2018-07-17 10:53

Watering Hole Attacks Target South Korean Users With ActiveX Exploits read more

North Korean Hackers Abuse ActiveX in Recent Attacks
2018-06-12 11:14

An ActiveX zero-day vulnerability discovered recently on the website of a South Korean think tank focused on national security has been abused by the North Korean-linked Lazarus group in attacks,...