Tag: security

GitLab users warned of flaw that allows file overwrite — so update now

GitLab recently discovered a critical vulnerability in its Community Edition (CE) and Enterprise Edition (EE) instances, which could allow malicious actors to write arbitrary files while creating a workspace.  In a security bulletin, GitLab said the vulnerability is quite serious and that users should apply the patch with utmost urgency.…

Read More

It’s true — Microsoft Teams group chat requests can be bad for you, as hackers hijack them to spread malware

Hackers are abusing a group chat feature in Microsoft Teams video conferencing software to deploy malware on people’s computers, researchers have warned. Cybersecurity experts from AT&T Cybersecurity said that a threat actor was observed using either a compromised Teams user, or domain, to send more than 1,000 Teams group chat…

Read More

Linux users beware — this security flaw could allow attackers to get root on major distros, so take extra care

A local privilege escalation flaw within the GNU C (glibc) has been disclosed, opening up the possibility of cyberattacks on endpoints with the library installed – quite a large pool, as the library enables critical kernel features across several major Linux distributions. Per BleepingComputer, the flaw, disclosed as CVE-2023-6246, was…

Read More

Scam for gold — the FBI is warning tech support criminals are now sending couriers to your house in brazen attempt

“Tech support” scammers are getting more audacious, and are now even sending couriers to victims’ houses to pick up the cash and various precious metals, the FBI has warned. In its alert, the FBI says the scammers mostly target the elderly and other technologically unsavvy people, sometimes impersonating a bank,…

Read More

Ransomware payments are falling fast as victims refuse to pay

More and more businesses suffering a ransomware attack are deciding not to pay the ransom demand, new research has revealed. The report from Coveware suggests the change is due to a number of factors, from the victims being more prepared for such a scenario, to losing trust in the attackers…

Read More

Fake Google ads are trying to trick users into downloading nasty malware — here’s how you can fight back

Consumers in China looking to access banned communications apps such as Telegram are being targeted by threat actors looking to deploy various malware. This is according to a new report from Malwarebytes’ Jérôme Segura, who found unnamed hackers have been using two Google Ads accounts to publish malicious ads.  The…

Read More