January 2025

Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation

Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation 2025-01-14 at 19:21 By Microsoft has shed light on a now-patched security flaw impacting Apple macOS that, if successfully exploited, could have allowed an attacker running as “root” to bypass the operating system’s System Integrity Protection (SIP) and install malicious kernel drivers by loading third-party kernel extensions. […]

Microsoft Uncovers macOS Vulnerability CVE-2024-44243 Allowing Rootkit Installation Read More »

Google OAuth Vulnerability Exposes Millions via Failed Startup Domains

Google OAuth Vulnerability Exposes Millions via Failed Startup Domains 2025-01-14 at 19:21 By New research has pulled back the curtain on a “deficiency” in Google’s “Sign in with Google” authentication flow that exploits a quirk in domain ownership to gain access to sensitive data. “Google’s OAuth login doesn’t protect against someone purchasing a failed startup’s

Google OAuth Vulnerability Exposes Millions via Failed Startup Domains Read More »

Telegram’s Data Sharing Surges Following CEO’s Arrest

Telegram’s Data Sharing Surges Following CEO’s Arrest 2025-01-14 at 19:02 View original post at vpnMentor Telegram, the encrypted messaging platform, experienced a sharp rise in law enforcement data requests in late 2024, triggered by CEO Pavel Durov’s arrest in France in August. Durov, a dual citizen of France and Russia, was detained over accusations that

Telegram’s Data Sharing Surges Following CEO’s Arrest Read More »

Oracle open source overlord calls it quits, leaves with big ol’ pile of shares

Oracle open source overlord calls it quits, leaves with big ol’ pile of shares 2025-01-14 at 18:49 By Lindsay Clark 38-year veteran Edward Screven led technology and architecture decisions since Sun merger One of Oracle’s longest-serving senior team members, chief corporate architect Edward Screven, has announced plans to retire on a comfortable sum.… This article

Oracle open source overlord calls it quits, leaves with big ol’ pile of shares Read More »

The Database Slayer: Deep Dive and Simulation of the Xbash Malware

The Database Slayer: Deep Dive and Simulation of the Xbash Malware 2025-01-14 at 18:49 By Karl Biron In the world of malware, common ransomware schemes aim to take the data within databases (considered the “gold” in the vault of any organization) and hold them hostage, promising data recovery upon ransom payment. This article is an

The Database Slayer: Deep Dive and Simulation of the Xbash Malware Read More »

Microsoft and OEMs cut prices of CoPilot+ PCs in Europe during Q4, analyst stats confirm

Microsoft and OEMs cut prices of CoPilot+ PCs in Europe during Q4, analyst stats confirm 2025-01-14 at 18:05 By Dan Robinson Double digit reduction only served to ‘stimulate some interest’ Microsoft and its close circle of OEMs slashed the price of Copilot+ PCs being sold into Europe in Q4, an analyst confirmed to The Register,

Microsoft and OEMs cut prices of CoPilot+ PCs in Europe during Q4, analyst stats confirm Read More »

Brit watchdog probes Google’s search and ad empire

Brit watchdog probes Google’s search and ad empire 2025-01-14 at 17:33 By Richard Speed Third front opened amid continued scrutiny from US and European regulators The UK’s Competition and Markets Authority (CMA) is the latest regulator investigating Google’s position in the search and search advertising business.… This article is an excerpt from The Register View

Brit watchdog probes Google’s search and ad empire Read More »

Malicious actors’ GenAI use has yet to match the hype

Malicious actors’ GenAI use has yet to match the hype 2025-01-14 at 17:08 By Zeljka Zorz Generative AI has helped lower the barrier for entry for malicious actors and has made them more efficient, i.e., quicker at creating convincing deepfakes, mounting phishing campaigns and investment scams, the most recent report by the Cyber Threat Alliance

Malicious actors’ GenAI use has yet to match the hype Read More »

Intel and AMD engineers rush to save Linux 6.13 after dodgy Microsoft tweak

Intel and AMD engineers rush to save Linux 6.13 after dodgy Microsoft tweak 2025-01-14 at 16:16 By Richard Speed ‘Let’s not do this again please’… days before release date Intel and AMD engineers have stepped in at the eleventh to deal with a code contribution from a Microsoft developer that could have broken Linux 6.13

Intel and AMD engineers rush to save Linux 6.13 after dodgy Microsoft tweak Read More »

Navigating DORA Compliance: A Roadmap to Operational Resilience with Trustwave

Navigating DORA Compliance: A Roadmap to Operational Resilience with Trustwave 2025-01-14 at 16:03 By The Digital Operational Resilience Act (DORA) is poised to reshape the European financial landscape, demanding a robust defense against cyber threats and operational disruptions and Trustwave is putting the pedal to the metal to prepare clients with our DORA Readiness Accelerator

Navigating DORA Compliance: A Roadmap to Operational Resilience with Trustwave Read More »

Stellar upgrades data recovery capabilities for Windows users

Stellar upgrades data recovery capabilities for Windows users 2025-01-14 at 16:02 By Industry News Stellar announced the latest version of its flagship software, Stellar Data Recovery for Windows. The software is powered by new device scan functionality and features a refreshed UI that is designed to help users retrieve data while requiring no technical expertise.

Stellar upgrades data recovery capabilities for Windows users Read More »

Commvault strengthens Microsoft Active Directory protection

Commvault strengthens Microsoft Active Directory protection 2025-01-14 at 15:57 By Industry News Commvault introduced an expansion of its platform to provide full and automated forest recovery for the world’s most widely used enterprise identity and access solution, Microsoft Active Directory. As organizations continue to combat non-stop cyberattacks and threats, Commvault Cloud Backup & Recovery for

Commvault strengthens Microsoft Active Directory protection Read More »

Snyk appears to deploy ‘malicious’ packages targeting Cursor for unknown reason

Snyk appears to deploy ‘malicious’ packages targeting Cursor for unknown reason 2025-01-14 at 15:34 By Connor Jones Packages removed, vendor said to have apologized to AI code editor as onlookers say it could have been a test Developer security company Snyk is at the center of allegations concerning the possible targeting or testing of Cursor,

Snyk appears to deploy ‘malicious’ packages targeting Cursor for unknown reason Read More »

Illicit HuiOne Telegram Market Surpasses Hydra, Hits $24 Billion in Crypto Transactions

Illicit HuiOne Telegram Market Surpasses Hydra, Hits $24 Billion in Crypto Transactions 2025-01-14 at 11:46 By The Telegram-based online marketplace known as HuiOne Guarantee and its vendors have cumulatively received at least $24 billion in cryptocurrency, dwarfing the now-defunct Hydra to become the largest online illicit marketplace to have ever operated. The figures, released by

Illicit HuiOne Telegram Market Surpasses Hydra, Hits $24 Billion in Crypto Transactions Read More »

Zero-Day Vulnerability Suspected in Attacks on Fortinet Firewalls with Exposed Interfaces

Zero-Day Vulnerability Suspected in Attacks on Fortinet Firewalls with Exposed Interfaces 2025-01-14 at 11:46 By Threat hunters are calling attention to a new campaign that has targeted Fortinet FortiGate firewall devices with management interfaces exposed on the public internet. “The campaign involved unauthorized administrative logins on management interfaces of firewalls, creation of new accounts, SSL

Zero-Day Vulnerability Suspected in Attacks on Fortinet Firewalls with Exposed Interfaces Read More »

Scroll to Top