Tag: security

A Microsoft Entra security update is locking users out of their accounts

Some Entra ID accounts were being flagged as having compromised credentials Seems it was just Microsoft “inadvertently generat[ing] [false] alerts” However, users were getting different explanations from Microsoft Windows administrators have been reporting mass account lockouts across various organizations following a Microsoft Entra ID update. Many believe these were false…

Read More

Cisco Webex security flaw could let hackers hijack your system via a meeting invite

Cisco found and fixed three vulnerabilities, including a high-severity one The high-severity issue was found in the Cisco Webex app It allowed criminals to run commands remotely Cisco has patched a high-severity vulnerability in its Webex video conferencing platform which allowed threat actors to mount remote code execution (RCE) attacks…

Read More

ASUS reveals critical security flaw affecting AiCloud routers, so patch now

ASUS patches a 9.2-rated security flaw in certain routers The flaw stems from AiCloud, a personal cloud server feature There’s no evidence of abuse yet, but users should be wary ASUS has released a fix for a critical-severity vulnerability affecting routers with AiCloud enabled which could allow threat actors to…

Read More

$25 software kits to steal your personal details are freely on sale on dark web — here’s how to remain safe

Phishing kits sold for $25 give low-skilled criminals powerful tools to steal data Drag-and-drop website builders and fake emails make launching professional scams easy Phishing-as-a-service platforms help criminals run large attack campaigns The world of cybercrime is ever-evolving, and phishing attacks are becoming easier to carry out. New research by…

Read More

State-sponsored actors spotted using ClickFix hacking tool developed by criminals

Proofpoint says multiple state-sponsored groups seen using ClickFix attack technique Russians, North Koreans, and Iranians all involved State-sponsored actors are mostly engaged in cyber-espionage The ClickFix attack technique has gotten so popular that even state-sponsored threat actors are using it, research from Proofpoint claims, having observed at least three groups…

Read More

Food retail giant behind several major US supermarket brands confirms data stolen in major ransomware breach

INC Ransom recently added Ahold Delhaize to its data leak site The company confirmed losing sensitive data in the attack The investigation is still ongoing, so users should be wary Ahold Delhaize, one of the world’s largest food retail groups, has confirmed it lost sensitive data from its US business…

Read More