Tag: security

Microsoft spies a new and worrying macOS malware strain

Microsoft warns of new version of the XCSSET infostealer It comes with new obfuscation, infection, and persistence techniques Experts warn all users to be careful Microsoft says it has spotted a new strain of an old macOS malware variant, one which comes with better obfuscation techniques, more persistence, and new…

Read More

Profit over privacy? Google gives advertisers more personal info in major ‘fingerprinting’ U-turn

Google has reversed its policy on ‘fingerprinting’ ‘Fingerprinting’ is a technique used to collect personal user data Users have very little say over what information is given to advertisers Do you sometimes wish that online advertisers had access to more of your private information without your consent or knowledge? Well,…

Read More

DeepSeek blocked from app stores in South Korea

South Korea privacy watchdog has temporarily halted downloads of DeepSeek DeepSeek is working with authorities to get compliant Latest in a series of privacy concerns raised about AI chatbots South Korea’s Personal Information Protection Commission (PIPC) has temporarily halted new downloads of Chinese-owned AI chatbot DeepSeek. Reports from TechCrunch confirm…

Read More

Palo Alto Networks PAN-OS sees authentication bypass under attack from hackers

Palo Alto Networks fixes authentication bypass PAN-OS flaw A day after the patch was released, criminals started looking for vulnerable endpoints The flaw allows them to run different PHP scripts A vulnerability in Palo Alto Networks firewalls is being abused in in-the-wild attacks, researchers are saying. The company recently found,…

Read More

Amazon EC2 instances under fire from whoAMI attacks potentially giving hackers code execution access

A flaw named WhoAMI was found in Amazon Machine Image It allows threat actors to gain RCE abilities on people’s AWS accounts A fix has been released, but many users are still yet to update Amazon Web Services (AWS) users are potentially vulnerable to a name confusion attack called “whoAMI”,…

Read More

Microsoft Outlook targeted by new malware attacks allowing sneaky hijacking

Security researchers spot new piece of malware called FinalDraft It gets commands from a drafted email It can exfiltrate data, run PowerShell, and more Cybersecurity researchers from Elastic Security Labs have discovered a new piece of malware which abuses draft email messages in Outlook for data exfiltration, PowerShell execution, and…

Read More