Cyber News - Page 30

Home > Cyber News

This category contains informative articles and news.
Cyber News about data breaches, online privacy and security, computer security threats, cybersecurity reports, vulnerability reports. News about the latest malware attacks.
Hot news about the security of Microsoft (Patch Tuesdays), Google, Android, Apple, Linux, and other big companies and software vendors.

CYBER NEWS
CVE-2021-30657-zero-day-sensorstechforum

CVE-2021-30657 macOS Zero-Day Exploited by Shlayer Malware

Apple recently fixed a zero-day flaw in macOS that could bypass the operating system’s anti-malware protections. The research also shows that a variant of the well-known Shlayer malware has already been exploiting the flaw for several months. CVE-2021-30657 Zero-Day Technical…

CYBER NEWS
CVE-2020-28588 linux kernel vulnerability-sensorstechforum

CVE-2020-28588: Information Disclosure Vulnerability in Linux Kernel

CVE-2020-28588 is an information disclosure vulnerability in the Linux kernel that could allow KASLR bypass, also causing the discovery of more unpatched flaws in ARM devices. CVE-2020-28588 Vulnerability According to Cisco Talos researchers who discovered the issue, the vulnerability exists…

CYBER NEWS
CVE-2021-1074 nvidia gpu driver vulnerability

CVE-2021-1074: Severe Flaws in Nvidia GPU Driver, Patch Now

The Nvidia graphics processing unit (GPU) display driver contains a series of vulnerabilities, the most severe of which is CVE-2021-1074. CVE-2021-1074 The vulnerability currently is undergoing analysis. What is known so far is that NVIDIA Windows GPU Display Driver for…

CYBER NEWS
flubot-android-spyware-missed-package-delivery-smishing

Flubot Android Spyware Delivered via Fake SMS Messages about Missed Package Delivery

A new piece of Android malware is spreading across devices using SMS messages (shortly known as smishing) about “missed package delivery.” It seems that Android users across the United Kingdom are particularly targeted by these messages, aiming to distribute the…

CYBER NEWS
Severe Apple AirDrop Vulnerability Could Expose Personal Details of Users

Severe Apple AirDrop Vulnerability Could Expose Personal Details of Users

A team of researchers from the Secure Mobile Networking Lab (SEEMOO) and the Cryptography and Privacy Engineering Group (ENCRYPTO) at TU Darmstadt discovered a severe privacy weakness in Apple’s wireless file-sharing protocol. The vulnerability could expose a user’s contact information,…

CYBER NEWS
comb21 data leak

COMB21 Data Leak: 3.28 Billion Passwords Exposed, Including Government Domains

There’s a new large-scale data leak of usernames and passwords that goes into the category of record breakers. Dubbed COMB21, the data leak consists of 3.28 billion passwords connected to 2.18 million unique email addresses. Furthermore, the leak also includes…

CYBER NEWS
Homebrew Cask  vulnerability

Homebrew Cask Repository for macOS and Linux Contains Critical Vulnerability

A new vulnerability exists in the official Homebrew Cask repository, a free, open-source software package manager allowing the installation of apps on macOS and Linux. The security flaw was discovered on 18th of April in Cask’s review-cask-pr GitHub Action used…

CYBER NEWS
qr codes security risks sensorstechforum

The Increased Use of QR Codes During Pandemic Creates Multiple Hacking Risks

One of the latest trends in the cybercrime field is exploiting QR codes, a new Ivanti research reveals. “While this may fly under the radar of many IT operations and security teams, consumer-based QR codes pose many security threats to…

CYBER NEWS
revil-gang-hits-quanta-apple-supplier-sensorstechforum

Apple Targeted by REvil Gang in a $50 Million Ransomware Attack

One of Apple’s key suppliers, Quanta Computer Inc, has been fighting a high-profile ransomware attack. The attack took place while Apple was revealing its newest line of iPads and iMacs, Bloomberg recently reported. Sodinokibi/REvil Threat Actors Hit Quanta, a Key…

CYBER NEWS
CVE-2021-22893

CVE-2021-22893: Actively Exploited Zero-Day in Pulse Secure VPN Devices

CVE-2021-22893 is classified as a critical zero-day in Pulse Secure VPN devices, and it has been exploited by nation-state hackers in attacks against US defense, finance, and government targets. Attacks against European targets have also been observed, according to a…

CYBER NEWS
CVE-2021-21224 zero-day

Patch Google Chrome against CVE-2021-21224 Zero-Day

Google just released an extensive Chrome update fixing seven vulnerabilities, one of which a zero-day. The zero-day is tracked as CVE-2021-21224, and exploits for it exist in the wild. You should check whether you are running the latest version of…

CYBER NEWS
mac malware

XCSSET Mac Malware Targets Apple’s M1-Based Macs and macOS 11

In March, 2021, Sentinel Labs researchers became aware of a trojanized Xcode project targeting iOS developers. The project was a malicious version of a legitimate, open-source project available on GitHub, enabling iOS programmers to use several advanced features for animating…

CYBER NEWS

OpENer EtherNet/IP Vulnerabilities Could Cause DoS Attacks, Data Leaks (CVE-2021-27478)

According to a new CISA security advisory, several vulnerabilities exist in the OpENer EtherNet/IP that could lead to denial-of-service attacks, remote code execution, and data leaks against industrial systems. Versions of OpENer released before February 10, 2021 are exposed to…

CYBER NEWS

Hacked Exchange Server Hosts Monero Miner Targeting Other Exchange Servers

Remember the slew of vulnerabilities putting Microsoft Exchange servers at risk of various attacks? ProxyLogon Vulnerabilities Used in Cryptojacking Attacks Now another danger should be added to the threat list – cryptojacking also known as cryptocurrency mining. SophosLabs researchers discovered…

CYBER NEWS
Multiple 1-Click Vulnerabilities in Telegram, VLC, LibreOffice (CVE-2021-30245)

Multiple 1-Click Vulnerabilities in Telegram, VLC, LibreOffice (CVE-2021-30245)

How safe are your applications, and how secure are you while using them? Multiple One-Click Bugs in Popular Applications Security researchers reported the abundance of one-click vulnerabilities in multiple popular software apps, allowing threat actors to perform arbitrary code execution…

CYBER NEWS
Microsoft CVE-2021-28310 Bug Actively Exploited in the Wild

Microsoft CVE-2021-28310 Bug Actively Exploited in the Wild

This month’s Patch Tuesday fixes 110 security vulnerabilities, 19 of which are classified as critical, 88 important, and one under active exploitation. Five of the vulnerabilities are zero-days. CVE-2021-28310 Under Active Exploitation CVE-2021-28310, the vulnerability under attack, is a Win32k…

CYBER NEWS
Critical Vulnerabilities in SAP Business Client Products-sensorstechforum

Critical Vulnerabilities in SAP Business Client Products (CVE-2021-27602)

“On 13th of April 2021, SAP Security Patch Day saw the release of 14 Security Notes,” the most dangerous of which affects its Business Client product. The SAP Business Client Bug The vulnerability resides in the Business Client product, which…

CYBER NEWS
Cracked Copies of Microsoft Office and Adobe Photoshop Spread Malware-sensorstechforum

Cracked Copies of Microsoft Office and Adobe Photoshop Spread Malware

Cracked software is not safe to use, and there are plenty of examples to prove that. Hackers often utilize cracked copies of legitimate programs to spread malware. By downloading the program, the user may also get a trojan horse, backdoor,…

CYBER NEWS
vulnerability sign

Adobe Fixes Several Critical Vulnerabilities in Photoshop, Bridge

Adobe recently released patches addressing four critical vulnerabilities in Adobe Bridge, and several other flaws in Adobe Digital Editions, Photoshop and RoboHelp. The April update contains all the necessary patches that need to be applied as soon as possible. Fortunately,…

CYBER NEWS

Exploit for Unpatched Vulnerability in Chrome, Opera, Edge Released

Indian security researcher Rajvardhan Agarwal recently published a proof-of-concept code for a brand new vulnerability affecting Google Chrome, Microsoft Edge, Brave, and Opera (all Chromium-based). The vulnerability resides in the V8 JavaScript engine, and it’s most likely the same flaw,…

This website uses cookies to improve user experience. By using our website you consent to all cookies in accordance with our Privacy Policy.
I Agree