December 2023

Experts Detail Multi-Million Dollar Licensing Model of Predator Spyware

Experts Detail Multi-Million Dollar Licensing Model of Predator Spyware 21/12/2023 at 20:16 By A new analysis of the sophisticated commercial spyware called Predator has revealed that its ability to persist between reboots is offered as an “add-on feature” and that it depends on the licensing options opted by a customer. “In 2021, Predator spyware couldn’t

Experts Detail Multi-Million Dollar Licensing Model of Predator Spyware Read More »

Chameleon Android Banking Trojan Variant Bypasses Biometric Authentication

Chameleon Android Banking Trojan Variant Bypasses Biometric Authentication 21/12/2023 at 20:16 By Cybersecurity researchers have discovered an updated version of an Android banking malware called Chameleon that has expanded its targeting to include users in the U.K. and Italy. “Representing a restructured and enhanced iteration of its predecessor, this evolved Chameleon variant excels in executing

Chameleon Android Banking Trojan Variant Bypasses Biometric Authentication Read More »

Celebrities Found in Unprotected Real Estate Database Exposing 1.5 Billion Records

Celebrities Found in Unprotected Real Estate Database Exposing 1.5 Billion Records 21/12/2023 at 18:17 By Ionut Arghire Real Estate Wealth Network database containing real estate ownership data, including for celebrities and politicians, was found unprotected. The post Celebrities Found in Unprotected Real Estate Database Exposing 1.5 Billion Records appeared first on SecurityWeek. This article is

Celebrities Found in Unprotected Real Estate Database Exposing 1.5 Billion Records Read More »

Four in five Apache Struts 2 downloads are for versions featuring critical flaw

Four in five Apache Struts 2 downloads are for versions featuring critical flaw 21/12/2023 at 17:18 By Connor Jones Seriously, people – please check the stuff you fetch more carefully Security vendor Sonatype believes developers are failing to address the critical remote code execution (RCE) vulnerability in the Apache Struts 2 framework, based on recent

Four in five Apache Struts 2 downloads are for versions featuring critical flaw Read More »

ESET Patches High-Severity Vulnerability in Secure Traffic Scanning Feature

ESET Patches High-Severity Vulnerability in Secure Traffic Scanning Feature 21/12/2023 at 16:31 By Eduard Kovacs ESET has patched CVE-2023-5594, a high-severity vulnerability that can cause a browser to trust websites that should not be trusted. The post ESET Patches High-Severity Vulnerability in Secure Traffic Scanning Feature appeared first on SecurityWeek. This article is an excerpt

ESET Patches High-Severity Vulnerability in Secure Traffic Scanning Feature Read More »

New JavaScript Malware Targeted 50,000+ Users at Dozens of Banks Worldwide

New JavaScript Malware Targeted 50,000+ Users at Dozens of Banks Worldwide 21/12/2023 at 15:50 By A new piece of JavaScript malware has been observed attempting to steal users’ online banking account credentials as part of a campaign that has targeted more than 40 financial institutions across the world. The activity cluster, which employs JavaScript web

New JavaScript Malware Targeted 50,000+ Users at Dozens of Banks Worldwide Read More »

ESO Solutions Data Breach Impacts 2.7 Million Individuals

ESO Solutions Data Breach Impacts 2.7 Million Individuals 21/12/2023 at 15:32 By Ionut Arghire ESO Solutions is informing 2.7 million individuals of a data breach impacting their personal and health information. The post ESO Solutions Data Breach Impacts 2.7 Million Individuals appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

ESO Solutions Data Breach Impacts 2.7 Million Individuals Read More »

Ivanti Patches Dozen Critical Vulnerabilities in Avalanche MDM Product

Ivanti Patches Dozen Critical Vulnerabilities in Avalanche MDM Product 21/12/2023 at 15:32 By Eduard Kovacs Ivanti has patched 20 vulnerabilities in its Avalanche MDM product, including a dozen remote code execution flaws rated critical. The post Ivanti Patches Dozen Critical Vulnerabilities in Avalanche MDM Product appeared first on SecurityWeek. This article is an excerpt from

Ivanti Patches Dozen Critical Vulnerabilities in Avalanche MDM Product Read More »

FTC Proposes Strengthening Children’s Online Privacy Rules to Address Tracking, Push Notifications

FTC Proposes Strengthening Children’s Online Privacy Rules to Address Tracking, Push Notifications 21/12/2023 at 15:32 By Associated Press The FTC has proposed strengthening children’s online privacy rules to address tracking and push notifications. The post FTC Proposes Strengthening Children’s Online Privacy Rules to Address Tracking, Push Notifications appeared first on SecurityWeek. This article is an

FTC Proposes Strengthening Children’s Online Privacy Rules to Address Tracking, Push Notifications Read More »

Surfing the Tidal Waves of HR-Themed Spam Emails

Surfing the Tidal Waves of HR-Themed Spam Emails 21/12/2023 at 15:02 By Katrina Udquin Threat actors constantly improve their tactics and are always on the hunt for technical or social vulnerabilities they can exploit. The pandemic-induced Great Resignation, massive layoffs, continuous company restructuring, and upcoming holidays make this a very busy time of changes in

Surfing the Tidal Waves of HR-Themed Spam Emails Read More »

Mozilla decides Trusted Types is a worthy security feature

Mozilla decides Trusted Types is a worthy security feature 21/12/2023 at 14:17 By Thomas Claburn DOM-XSS attacks have become scarce on Google websites since TT debuted Mozilla last week revised its position on a web security technology called Trusted Types, which it has decided to implement in its Firefox browser.… This article is an excerpt

Mozilla decides Trusted Types is a worthy security feature Read More »

Product showcase: DCAP solution FileAuditor for data classification and access rights audit

Product showcase: DCAP solution FileAuditor for data classification and access rights audit 21/12/2023 at 14:02 By Help Net Security The concept of DCAP solutions was introduced by Gartner experts, as it was clear, that without such solutions information security (IS) specialists would not be able to cope with the protection of data in various silos

Product showcase: DCAP solution FileAuditor for data classification and access rights audit Read More »

Google Rushes to Patch Eighth Chrome Zero-Day This Year

Google Rushes to Patch Eighth Chrome Zero-Day This Year 21/12/2023 at 13:48 By Ionut Arghire Google warns of in-the-wild exploitation of CVE-2023-7024, a new Chrome vulnerability, the eighth documented this year. The post Google Rushes to Patch Eighth Chrome Zero-Day This Year appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Google Rushes to Patch Eighth Chrome Zero-Day This Year Read More »

German Authorities Dismantle Dark Web Hub ‘Kingdom Market’ in Global Operation

German Authorities Dismantle Dark Web Hub ‘Kingdom Market’ in Global Operation 21/12/2023 at 13:12 By German law enforcement has announced the disruption of a dark web platform called Kingdom Market that specialized in the sales of narcotics and malware to “tens of thousands of users.” The exercise, which involved collaboration from authorities from the U.S., Switzerland, Moldova, and

German Authorities Dismantle Dark Web Hub ‘Kingdom Market’ in Global Operation Read More »

Why Nvidia and AMD are roasting each other over AI performance claims

Why Nvidia and AMD are roasting each other over AI performance claims 21/12/2023 at 12:03 By Tobias Mann My card could beat up your card Analysis  Any time we write about vendor supplied benchmarks and performance claims they’re accompanied by a warning to take them with a grain of salt.… This article is an excerpt

Why Nvidia and AMD are roasting each other over AI performance claims Read More »

Scroll to Top