Skip to main content

Security News

Filter by:

Google Chrome to warn when installed extensions are malware

Google is testing a new feature in the Chrome browser that will warn users when an installed extension has been removed from the Chrome Web Store, usually indicative of it being malware. [...]
Bleepingcomputer 21 Aug 2023 1961 Views

WinRAR Flaw Lets Hackers Run Programs When You Open RAR Archives

A high-severity vulnerability has been fixed in WinRAR, the popular file archiver utility for Windows used by millions, that can execute commands on a computer simply by opening an archive.
Cyware News 19 Aug 2023 1647 Views

Microsoft AI suggests food bank as a “cannot miss” tourist spot in Canada

AI-penned Microsoft Travel article recommends food bank as a must-see destination. [...]
Ars Technica 18 Aug 2023 6988 Views

Microsoft PowerShell Gallery vulnerable to spoofing, supply chain attacks

Lax policies for package naming on Microsoft's PowerShell Gallery code repository allow threat actors to perform typosquatting attacks, spoof popular packages and potentially lay the ground for massive supply chain attacks. [...]
Bleepingcomputer 18 Aug 2023 1813 Views

Phishing campaign steals accounts for Zimbra email servers worlwide

An ongoing phishing campaign has been underway since at least April 2023 that attempts to steal credentials for Zimbra Collaboration email servers worldwide. [...]
Bleepingcomputer 18 Aug 2023 1830 Views

Cybercriminals Abusing Cloudflare R2 for Hosting Phishing Pages, Experts Warn

Threat actors' use of Cloudflare R2 to host phishing pages has witnessed a 61-fold increase over the past six months.
The Hacker News 16 Aug 2023 1900 Views

Ivanti Avalanche impacted by critical pre-auth stack buffer overflows

Two stack-based buffer overflows collectively tracked as CVE-2023-32560 impact Ivanti Avalanche, an enterprise mobility management (EMM) solution designed to manage, monitor, and secure a wide range of mobile devices.
Bleeping Computer 16 Aug 2023 1804 Views

LinkedIn accounts hacked in widespread hijacking campaign

LinkedIn is being targeted in a wave of account hacks resulting in many accounts being locked out for security reasons or ultimately hijacked by attackers.
Bleepingcomputer 16 Aug 2023 1924 Views

New CVE-2023-3519 scanner detects hacked Citrix ADC, Gateway devices

Mandiant has released a scanner to check if a Citrix NetScaler Application Delivery Controller (ADC) or NetScaler Gateway Appliance was compromised in widespread attacks exploiting the CVE-2023-3519 vulnerability. 
Bleeping Computer 16 Aug 2023 2018 Views

FBI warns of increasing cryptocurrency recovery scams

The FBI is warning of an increase in scammers pretending to be recovery companies that can help victims of cryptocurrency investment scams recover lost assets. [...]
Bleepingcomputer 15 Aug 2023 1747 Views