Security News

December's Windows 11 KB5033375 update breaks Wi-Fi connectivity
2023-12-18 21:25

The KB5033375 cumulative update released during the December 2023 Patch Tuesday causes Wi-Fi connectivity issues on some Windows 11 devices. As a temporary solution, users affected by this issue are advised to uninstall the KB5033375 Windows 11 December cumulative update and the related KB50532288 optional preview update.

Mr Cooper cyberattack laid bare: 14.7M people's info stolen, costs hit $25M
2023-12-18 20:54

Mortgage lender Mr Cooper has now admitted almost 14.7 million people's private information, including addresses and bank account numbers, were stolen in an earlier IT security breach, which is expected to cost the business at least $25 million to clean up. In notifications filed with the US states of California and Maine on Friday, the mortgage giant revealed that scope of the cyberattack was much worse than it believed: highly personal records belonging to millions were snatched by one or more miscreants.

Microsoft discovers critical RCE flaw in Perforce Helix Core Server
2023-12-18 20:49

Four vulnerabilities, one of which is rated critical, have been discovered in the Perforce Helix Core Server, a source code management platform widely used by the gaming, government, military, and technology sectors. The four flaws discovered by Microsoft mainly involve denial of service issues, with the most severe allowing arbitrary remote code execution as LocalSystem by unauthenticated attackers.

Cyber-crooks slip into Vans, trample over operations
2023-12-18 19:45

A digital break-in has disrupted VF Corp's operations and its ability to fulfill orders, according to the apparel and footwear giant. While the US-based corp's retail stores around the world remain open, "VF is experiencing certain operational disruptions," the VF spokesperson told The Register.

Vans and North Face owner VF Corp hit by ransomware attack
2023-12-18 18:56

American global apparel and footwear giant VF Corporation, the owner of brands like Supreme, Vans, Timberland, and The North Face, has disclosed a security incident that caused operational disruptions. In response to the detected unauthorized access on its network, the company shut down some of its systems and brought in external experts to help contain the attack.

Microsoft fixes Windows printer issues with new troubleshooter
2023-12-18 18:17

Microsoft has released a new troubleshooter tool to fix an issue where the HP Smart app would automatically install on Windows after renaming all printers to HP LaserJet M101-M106. Customers have reported experiencing this issue on various online social networks and Microsoft's own community website since late November. Over the weekend, the company released a Microsoft Printer Metadata Troubleshooter Tool to help admins and users address this printing issue.

FBI: Play ransomware breached 300 victims, including critical orgs
2023-12-18 16:24

The Federal Bureau of Investigation says the Play ransomware gang has breached roughly 300 organizations worldwide between June 2022 and October 2023, some of them critical infrastructure entities. "Since June 2022, the Play ransomware group has impacted a wide range of businesses and critical infrastructure in North America, South America, and Europe," the three government agencies cautioned today.

Beware: Experts Reveal New Details on Zero-Click Outlook RCE Exploits
2023-12-18 15:43

Technical details have emerged about two now-patched security flaws in Microsoft Windows that could be chained by threat actors to achieve remote code execution on the Outlook email service sans...

Police Get Medical Records without a Warrant
2023-12-18 15:37

Lawmakers noted the pharmacies' policies for releasing medical records in a letter dated Tuesday to the Department of Health and Human Services Secretary Xavier Becerra. All eight of the pharmacies said they do not require law enforcement to have a warrant prior to sharing private and sensitive medical records, which can include the prescription drugs a person used or uses and their medical conditions.

Former IT manager pleads guilty to attacking high school network
2023-12-18 15:00

Conor LaHiff, a former IT manager for a New Jersey public high school, has admitted to committing a cyberattack against his former employer following the termination of his employment in June 2023. Last week, the U.S. Department of Justice announced that LaHiff pleaded guilty to one count of unauthorized damage to protected computers, violating the Computer Fraud and Abuse Act.