Security News

Hackers push malware via Google search ads for VLC, 7-Zip, CCleaner
2023-01-17 23:09

Hackers are setting up fake websites for popular free and open-source software to promote malicious downloads through advertisements in Google search results. The distribution method was unknown at the time but separate reports in December from cybersecurity companies Trend Micro and Guardio revealed that hackers were abusing the Google Ads platform to push malicious downloads in search results.

Gootkit malware abuses VLC to infect healthcare orgs with Cobalt Strike
2023-01-11 17:24

The Gootkit loader malware operators are running a new SEO poisoning campaign that abuses VLC Media Player to infect Australian healthcare entities with Cobalt Strike beacons. The campaign goal is to deploy the Cobalt Strike post-exploitation toolkit on infected devices for initial access to corporate networks.

Chinese hackers abuse VLC Media Player to launch malware loader
2022-04-05 17:58

Security researchers have uncovered a long-running malicious campaign from hackers associated with the Chinese government who are using VLC Media Player to launch a custom malware loader. Researchers at Symantec, a division of Broadcom, found that after gaining access to the target machine the attacker deployed a custom loader on compromised systems with the help of the popular VLC media player.

VLC Media Player 3.0.14 fixes broken Windows automatic updater
2021-05-11 14:08

VideoLan has released VLC Media Player 3.0.14 to fix an issue affecting Window users and causing the software's auto-updater not to launch the new version's installer automatically. "VLC users on Windows might encounter issues when trying to auto update VLC from version 3.0.12 and 3.0.13," VideoLan explained.

VLC Media Player 3.0.12 fixes multiple remote code execution flaws
2021-01-20 14:47

VideoLan released VLC Media Player 3.0.12 for Windows, Mac, and Linux last week with numerous improvements, features, and security fixes. This release is a significant upgrade for Mac users as it provides native support for Apple Silicon and fixes audio distortion in macOS. In addition to bug fixes and improvements, this release also fixes numerous security vulnerabilities reported by Zhen Zhou of the NSFOCUS Security Team.

Stuff like sophisticated government spyware is scary and all – but don't forget, a single .wmv file can pwn you via VLC
2019-08-21 08:57

Keep your media player, like other apps, up to date: 13 security flaws fixed VideoLAN has issued an update to address a baker's dozen of CVE-listed security vulnerabilities in its widely used VLC...

VideoLAN Patches Dozen Vulnerabilities in VLC
2019-08-20 12:24

VideoLAN this week released a software update to its highly popular VLC media player to address a dozen vulnerabilities, the most important of which could lead to arbitrary code execution. read more

VLC users urged to implement latest security update
2019-08-20 10:20

VLC, the popular cross-platform media player, has reached version 3.0.8, which fixes over a dozen security vulnerabilities, some of which could be exploited by attackers to achieve code execution...

VLC Media Player Allows Desktop Takeover Via Malicious Video Files
2019-08-19 20:59

VideoLAN has released an updated version of its VLC Player to fix over a dozen bugs.

Dodgy vids can hijack PCs via VLC security flaw, US, Germany warn. Software's makers not app-y with that claim
2019-07-23 20:05

'Fake news!' dev team cries VLC is said to be once again vulnerable to remote-code execution – meaning a malicious video opened by the software could potentially crash the media player, or joyride...