Skip to main content

Security News

Filter by:

Cryptominer Farm Rigged with 3,800 PS4s Busted in Ukraine

Ukrainian cops seize PlayStation 4 consoles, graphics cards, processors and more in cryptomining sting involving alleged electricity theft.
Threatpost 15 Jul 2021 652 Views

SonicWall releases urgent notice about 'imminent' ransomware targeting firmware

SonicWall told some customers that they needed to disconnect some products "immediately."
ZDnet 15 Jul 2021 605 Views

Microsoft Crushes 116 Bugs, Three Actively Exploited

Microsoft tackles 12 critical bugs, part of its July 2021 Patch Tuesday roundup, capping a ‘PrintNightmare’ month of headaches for system admins.
Threatpost 14 Jul 2021 471 Views

Ransomware Giant REvil’s Sites Disappear

Just days after President Biden demanded that Russian President Putin shut down ransomware groups, the servers of one of the biggest groups mysteriously went dark.
Threatpost 14 Jul 2021 669 Views

The impact of Apple’s sideloading philosophy on developers

On June 23, Apple unleashed messaging to explain why users should only install Apple-approved apps through its App Store on iOS.
ZDnet 14 Jul 2021 537 Views

SolarWinds patches critical Serv-U vulnerability exploited in the wild

SolarWinds is urging customers to patch a Serv-U remote code execution vulnerability exploited in the wild by "a single threat actor" in attacks targeting a limited number of customers.
Bleeping Computer 13 Jul 2021 391 Views

Scam artists exploit Kaseya security woes to deploy malware

Kaseya has urged customers to be wary of a wave of phishing emails taking advantage of the disruption caused by a recent ransomware attack. 
ZDNet 12 Jul 2021 10134 Views

Coursera Flunks API Security Test in Researchers’ Exam

The problem APIs included numero uno on the OWASP API Security Top 10: a Broken Object Level Authorization (BOLA) issue that could have exposed personal data.
Threatpost 9 Jul 2021 546 Views

Bogus Kaseya VSA patches circulate, booby-trapped with remote-access tool

Phishing campaign aims to capitalize on slow fix deployment, it seems This month's Kaseya VSA ransomware attack took a turn for the worse on Wednesday with word that miscreants have launched a phishing campaign to ensnare victims with a remote-control tool disguised as a VSA...
The Register 8 Jul 2021 11419 Views

Critical Sage X3 RCE Bug Allows Full System Takeovers

Security vulnerabilities in the ERP platform could allow attackers to tamper with or sabotage victims' business-critical processes and to intercept data.
Threatpost 8 Jul 2021 656 Views