Spyware campaign stole sensitive user information through 111 fake Google Chrome extensions which gathered over 32 million downloads on the Chrome Web Store.
The US Secret Service is now pointing the finger at state-backed Chinese hackers, accusing a known advanced persistent threat group APT41 of stealing about $20 million of US Covid benefits during the pandemic.
Security researchers discovered 33 vulnerabilities in millions of devices using four popular open-source libraries. The bugs allow attacks, including remote code execution and DDoS.
Despite the NSA warning of hackers exploiting bugs such as Bluekeep and Heartbleed vulnerabilities and updates being released, millions of vulnerable systems remained unpatched.
Mimecast’s forensic investigation found that SolarWinds hackers accessed limited source code repositories and account details after compromising customers' Microsoft 365 tenants.
The best way to deal with a vulnerability is doing what you can to prevent them from happening in the first place. Oftentimes, cyber risk can be managed even through simple and basic security hygiene practices.
Mirai Botnet Trojans Actively Exploiting Microsoft Azure Vulnerability and Locking Other Hackers Out
Security researchers discovered that Mirai Botnet trojans actively exploited the OMIGOD Azure vulnerability and then closed the OMI SSL port 5896 to prevent others from doing the same.
Wiz researchers found that a Microsoft misconfiguration error created an opening for attackers to not only manipulate Bing search results, but to potentially steal Office 365 credentials.
MIT is proposing the use of health certification and digital identity tracking to anonymize personal data and protect user privacy while determining who can safely return to work.
MIT researchers in collaboration with CMU, Brown and Boston University has developed a privacy preserving COVID-19 contact tracing app that uses Bluetooth to broadcast chiprs of random IDs to other devices.









