Security News

Windows July security updates send PCs into BitLocker recovery
2024-07-24 10:40

Microsoft warned that some Windows devices will boot into BitLocker recovery after installing the July 2024 Windows security updates. [...]

How to Reduce SaaS Spend and Risk Without Impacting Productivity
2024-07-24 10:01

There is one simple driver behind the modern explosion in SaaS adoption: productivity. We have reached an era where purpose-built tools exist for almost every aspect of modern business and it’s...

Patchwork Hackers Target Bhutan with Advanced Brute Ratel C4 Tool
2024-07-24 09:43

The threat actor known as Patchwork has been linked to a cyber attack targeting entities with ties to Bhutan to deliver the Brute Ratel C4 framework and an updated version of a backdoor called...

School gets an F for using facial recognition on kids in canteen
2024-07-24 08:32

Watchdog reprimand follows similar cases in 2021 The UK's data protection watchdog has reprimanded a school in Essex for using facial recognition for canteen payments, nearly three years after...

CrowdStrike Explains Friday Incident Crashing Millions of Windows Devices
2024-07-24 08:32

Cybersecurity firm CrowdStrike on Wednesday blamed an issue in its validation system for causing millions of Windows devices to crash as part of a widespread outage late last week. "On Friday,...

Forget security – Google's reCAPTCHA v2 is exploiting users for profit
2024-07-24 06:33

Web puzzles don't protect against bots, but humans have spent 819 million unpaid hours solving them Google promotes its reCAPTCHA service as a security mechanism for websites, but researchers...

Microsoft Defender Flaw Exploited to Deliver ACR, Lumma, and Meduza Stealers
2024-07-24 06:15

A now-patched security flaw in the Microsoft Defender SmartScreen has been exploited as part of a new campaign designed to deliver information stealers such as ACR Stealer, Lumma, and Meduza....

CISA Adds Twilio Authy and IE Flaws to Exploited Vulnerabilities List
2024-07-24 05:56

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two security flaws to its Known Exploited Vulnerabilities (KEV) catalog, based on evidence of active exploitation. The...

CrowdStrike blames a test software bug for that giant global mess it made
2024-07-24 05:17

CrowdStrike has blamed a bug in its own test software for the mass-crash-event it caused last week. Rapid response content is delivered in those channel files as so-called "Template instances," which CrowdStrike describes as "Instantiations of a given template type." Thus, the rapid response content relies on template code defined by the base sensor content, and each piece of this response content is a template instance.

CrowdStrike blames a test software bug for that giant global mess it made
2024-07-24 05:17

Something called 'Content Validator' did not validate the content, and the rest is history CrowdStrike has blamed a bug in its own test software for the mass-crash-event it caused last week.…