Security News

Microsoft: Outdated Exchange servers fail to auto-mitigate security bugs
2025-01-24 15:26

Microsoft says outdated Exchange servers cannot receive new emergency mitigation definitions because an Office Configuration Service certificate type is being deprecated. [...]

RANsacked: Over 100 Security Flaws Found in LTE and 5G Network Implementations
2025-01-24 12:58

A group of academics has disclosed details of over 100 security vulnerabilities impacting LTE and 5G implementations that could be exploited by an attacker to disrupt access to service and even...

Asus lets processor security fix slip out early, AMD confirms patch in progress
2025-01-23 07:19

Answers on a postcard to what 'Microcode Signature Verification Vulnerability' might mean AMD has confirmed at least some of its microprocessors suffer a microcode-related security vulnerability,...

CISOs are juggling security, responsibility, and burnout
2025-01-23 04:30

This article gathers excerpts from multiple reports, presenting statistics and insights that may be valuable for CISOs, helping them with informed decision-making, risk management, and developing...

Trump 'waved a white flag to Chinese hackers' as Homeland Security axed cyber advisory boards
2025-01-22 21:30

And: America 'has never been less secure,' retired rear admiral tells Congress The Trump administration gutted key cybersecurity advisory boards in its first days, as expert witnesses warned...

‘Sneaky Log’ Microsoft Spoofing Scheme Sidesteps Two-Factor Security
2025-01-21 21:35

The phishing-as-a-service kit from Sneaky Log creates fake authentication pages to farm account information, including two-factor security codes.

7-Zip fixes bug that bypasses Windows MoTW security warnings, patch now
2025-01-21 16:05

​A high-severity vulnerability in the 7-Zip file archiver allows attackers to bypass the Mark of the Web (MotW) Windows security feature and execute code on users' computers when extracting...

Breaking free from reactive security
2025-01-21 08:35

Why not adopt a new approach for 2025? Webinar In today's digital landscape, cybersecurity teams can often find themselves trapped in an endless cycle of responding to threats.…

CERT-UA Warns of Cyber Scams Using Fake AnyDesk Requests for Fraudulent Security Audits
2025-01-21 05:27

The Computer Emergency Response Team of Ukraine (CERT-UA) is warning of ongoing attempts by unknown threat actors to impersonate the cybersecurity agency by sending AnyDesk connection requests....

Addressing the intersection of cyber and physical security threats
2025-01-21 05:00

In this Help Net Security, Nicholas Jackson, Director of Cyber Operations at Bitdefender, discusses how technologies like AI, quantum computing, and IoT are reshaping cybersecurity. He shares his...