Security News

Microsoft confirms IE bug squashed in Patch Tuesday was exploited zero-day
2024-09-17 01:29

The C in these CVEs stands for Confusing Analysis Microsoft, in a low-key update to its September Patch Tuesday disclosures, has confirmed a just-fixed Internet Explorer vulnerability was...

Windows vulnerability abused braille “spaces” in zero-day attacks
2024-09-15 18:16

A recently fixed "Windows MSHTML spoofing vulnerability" tracked under CVE-2024-43461 is now marked as previously exploited after it was used in attacks by the Void Banshee APT hacking group. [...]

Adobe fixed Acrobat bug, neglected to mention whole zero-day exploit thing
2024-09-12 18:29

SaaS seller sets severity to 'critical' Adobe's patch for a remote code execution (RCE) bug in Acrobat this week doesn't mention that the vulnerability is considered a zero-day nor that a...

Adobe fixes Acrobat Reader zero-day with public PoC exploit
2024-09-11 17:42

A cybersecurity researcher is urging users to upgrade Adobe Acrobat Reader after a fix was released yesterday for a remote code execution zero-day with a public in-the-wild proof-of-concept exploit. [...]

Patch Tuesday for September 2024: Microsoft Catches Four Zero-Day Vulnerabilities
2024-09-10 20:53

A Mark of the Web security alert vulnerability and three others have been exploited in the wild and are now covered by Redmond’s monthly patch batch.

Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixes
2024-09-10 19:41

September 2024 Patch Tuesday is here and Microsoft has delivered 79 fixes, including those for a handful of zero-days (CVE-2024-38217, CVE-2024-38226, CVE-2024-38014, CVE-2024-43461) exploited by...

Microsoft fixes Windows Smart App Control zero-day exploited since 2018
2024-09-10 18:14

​Microsoft has fixed a Windows Smart App Control and SmartScreen flaw that has been exploited in attacks as a zero-day since at least 2018. [...]

Microsoft September 2024 Patch Tuesday fixes 4 zero-days, 79 flaws
2024-09-10 17:32

Today is Microsoft's September 2024 Patch Tuesday, which includes security updates for 79 flaws, including four actively exploited and one publicly disclosed zero-days. [...]

New Chrome Zero-Day
2024-09-10 11:04

According to Microsoft researchers, North Korean hackers have been using a Chrome zero-day exploit to steal cryptocurrency.

North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day Exploit
2024-08-31 15:35

A recently patched security flaw in Google Chrome and other Chromium web browsers was exploited as a zero-day by North Korean actors in a campaign designed to deliver the FudModule rootkit. The...