Skip to main content

Security News

Filter by:

New Mockingjay process injection technique evades EDR detection

Researchers at cybersecurity firm Security Joes discovered the method, which utilizes legitimate DLLs with RWX (read, write, execute) sections for evading EDR hooks and injecting code into remote processes.
Cyware News 27 Jun 2023 774 Views

Trojanized Super Mario game used to install Windows malware

A trojanized installer for the popular Super Mario 3: Mario Forever game for Windows has been infecting unsuspecting players with multiple malware infections.
Bleeping Computer 27 Jun 2023 990 Views

Microsoft 365 users report Outlook, Teams won't start or freezes

Network and IT admins have been dealing with ongoing Microsoft 365 issues this week, reporting that some end users cannot use Microsoft Outlook or other Microsoft 365 apps. [...]
Bleepingcomputer 23 Jun 2023 1127 Views

Zero-Day Alert: Apple Releases Patches for Actively Exploited Flaws in iOS, macOS, and Safari

Apple on Wednesday released a slew of updates for iOS, iPadOS, macOS, watchOS, and Safari browser to address a set of flaws it said were actively exploited in the wild. [...]
thehackernews 23 Jun 2023 826 Views

New Condi malware builds DDoS botnet out of TP-Link AX21 routers

A new DDoS-as-a-Service botnet called "Condi" emerged in May 2023, exploiting a vulnerability in TP-Link Archer AX21 (AX1800) Wi-Fi routers to build an army of bots to conduct attacks. [...]
Bleepingcomputer 21 Jun 2023 732 Views

Purely AI-generated songs declared ineligible for Grammy Awards

"A work that contains no human authorship is not eligible in any categories."
Ars Technica 21 Jun 2023 7357 Views

VMware warns of critical vRealize flaw exploited in attacks

VMware updated a security advisory published two weeks ago to warn customers that a now-patched critical vulnerability allowing remote code execution is being actively exploited in attacks. [...]
Bleepingcomputer 21 Jun 2023 892 Views

Android spyware camouflaged as VPN, chat apps on Google Play

Three Android apps on Google Play were used by state-sponsored threat actors to collect intelligence from targeted devices, such as location data and contact lists.
Bleeping Computer 20 Jun 2023 936 Views

ASUS urges customers to patch critical router vulnerabilities

ASUS has released new firmware with cumulative security updates that address vulnerabilities in multiple router models, warning customers to immediately update their devices or restrict WAN access until they're secured.
Bleeping Computer 20 Jun 2023 930 Views

Reddit hackers threaten to leak data stolen in February breach

The BlackCat (ALPHV) ransomware gang is behind a February cyberattack on Reddit, where the threat actors claim to have stolen 80GB of data from the company. [...]
Bleepingcomputer 19 Jun 2023 747 Views