Security News

Google: 70% of exploited flaws disclosed in 2023 were zero-days
2024-10-16 22:12

Google Mandiant security analysts warn of a worrying new trend of threat actors demonstrating a better capability to discover and exploit zero-day vulnerabilities in software. [...]

Malicious ads exploited Internet Explorer zero day to drop malware
2024-10-16 13:59

The North Korean hacking group ScarCruft launched a large-scale attack in May that leveraged an Internet Explorer zero-day flaw to infect targets with the RokRAT malware and exfiltrate data. [...]

North Korean ScarCruft Exploits Windows Zero-Day to Spread RokRAT Malware
2024-10-16 10:50

The North Korean threat actor known as ScarCruft has been linked to the zero-day exploitation of a now-patched security flaw in Windows to infect devices with malware known as RokRAT. The...

The Rise of Zero-Day Vulnerabilities: Why Traditional Security Solutions Fall Short
2024-10-15 11:00

In recent years, the number and sophistication of zero-day vulnerabilities have surged, posing a critical threat to organizations of all sizes. A zero-day vulnerability is a security flaw in...

Week in review: Microsoft fixes two exploited zero-days, SOC teams are losing trust in security tools
2024-10-13 08:00

Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572) For October...

Actively exploited Firefox zero-day fixed, update ASAP! (CVE-2024-9680)
2024-10-10 12:29

Mozilla has pushed out an emergency update for its Firefox and Firefox ESR browsers to fix a vulnerability (CVE-2024-9680) that is being exploited in the wild. About CVE-2024-9680 Reported by ESET...

Firefox Zero-Day Under Attack: Update Your Browser Immediately
2024-10-10 04:24

Mozilla has revealed that a critical security flaw impacting Firefox and Firefox Extended Support Release (ESR) has come under active exploitation in the wild. The vulnerability, tracked as...

Mozilla fixes Firefox zero-day actively exploited in attacks
2024-10-09 17:34

Mozilla has issued an emergency security update for the Firefox browser to address a critical use-after-free vulnerability that is currently exploited in attacks. [...]

Microsoft patches two zero-days exploited in the wild (CVE-2024-43573, CVE-2024-43572)
2024-10-08 19:37

For October 2024 Patch Tuesday, Microsoft has released fixes for 117 security vulnerabilities, including two under active exploitation: CVE-2024-43573, a spoofing bug affecting the Windows MSHTML...

Microsoft October 2024 Patch Tuesday fixes 5 zero-days, 118 flaws
2024-10-08 18:16

Today is Microsoft's October 2024 Patch Tuesday, which includes security updates for 118 flaws, including five publicly disclosed zero-days, two of which are actively exploited. [...]