Wednesday, December 9, 2020

Microsoft Releases Windows Update (Dec 2020) to Fix 58 Security Flaws

Microsoft on Tuesday released fixes for 58 newly discovered security flaws spanning as many as 11 products and services as part of its final Patch Tuesday of 2020, effectively bringing their CVE total to 1,250 for the year. Of these 58 patches, nine are rated as Critical, 46 are rated as Important, and three are rated Moderate in severity. The December security release addresses issues in
https://thehackernews.com/2020/12/microsoft-releases-windows-update-dec.html?utm_source=dlvr.it&utm_medium=blogger

Tuesday, December 8, 2020

NZ adopts Google/Apple COVID-19 exposure notification tech for contact tracing

Read the original article: NZ adopts Google/Apple COVID-19 exposure notification tech for contact tracing Adding Bluetooth capability to the NZ COVID Tracer app from Thursday.   Become a supporter of IT Security News and help us remove the ads. Read… Read more → The post NZ adopts Google/Apple COVID-19 exposure notification tech for contact tracing first appeared on IT Security News.
https://www.itsecuritynews.info/nz-adopts-google-apple-covid-19-exposure-notification-tech-for-contact-tracing/?utm_source=dlvr.it&utm_medium=blogger

WARNING — Critical Remote Hacking Flaws Affect D-Link VPN Routers

Some widely sold D-Link VPN router models have been found vulnerable to three new high-risk security vulnerabilities, leaving millions of home and business networks open to cyberattacks—even if they are secured with a strong password. Discovered by researchers at Digital Defense, the three security shortcomings were responsibly disclosed to D-Link on August 11, which, if exploited, could allow
https://thehackernews.com/2020/12/warning-critical-remote-hacking-flaws.html?utm_source=dlvr.it&utm_medium=blogger

NSA Warns Russian Hacker Exploiting VMware Bug to Breach Corporate Networks

The US National Security Agency (NSA) on Monday issued an advisory warning that Russian threat actors are leveraging recently disclosed VMware vulnerability to install malware on corporate systems and access protected data. Specifics regarding the identities of the threat actor exploiting the VMware flaw or when these attacks started were not disclosed. The development comes two weeks after the
https://thehackernews.com/2020/12/nsa-warns-russian-hacker-exploiting.html?utm_source=dlvr.it&utm_medium=blogger

Monday, December 7, 2020

House lawmakers push for veto-proof majority on defense bill

Read the original article: House lawmakers push for veto-proof majority on defense bill Lawmakers are counting on strong support to pass the 2021 defense authorization bill under threat of presidential veto, but concede that anything is possible.   Become a… Read more → The post House lawmakers push for veto-proof majority on defense bill first appeared on IT Security News.
https://www.itsecuritynews.info/house-lawmakers-push-for-veto-proof-majority-on-defense-bill/?utm_source=dlvr.it&utm_medium=blogger

Iranian RANA Android Malware Also Spies On Instant Messengers

A team of researchers today unveiled previously undisclosed capabilities of an Android spyware implant—developed by a sanctioned Iranian threat actor—that could let attackers spy on private chats from popular instant messaging apps, force Wi-Fi connections, and auto-answer calls from specific numbers for purposes of eavesdropping on conversations. In September, the US Department of the Treasury
https://thehackernews.com/2020/12/iranian-rana-android-malware-also-spies.html?utm_source=dlvr.it&utm_medium=blogger

Payment Card Skimmer Group Using Raccoon Info-Stealer to Siphon Off Data

A cybercrime group known for targeting e-commerce websites unleashed a "multi-stage malicious campaign" earlier this year designed with an intent to distribute information stealers and JavaScript-based payment skimmers. In a new report published today and shared with The Hacker News, Singapore-based cybersecurity firm Group-IB attributed the operation to the same group that's been linked to a
https://thehackernews.com/2020/12/payment-card-skimmer-group-using.html?utm_source=dlvr.it&utm_medium=blogger

Sunday, December 6, 2020

UAE target of cyber attacks after Israel deal, official says

Read the original article: UAE target of cyber attacks after Israel deal, official says UAE target of cyber attacks after Israel deal, official says l33tdawg Sun, 12/06/2020 – 23:10   Become a supporter of IT Security News and help us… Read more → The post UAE target of cyber attacks after Israel deal, official says first appeared on IT Security News.
https://www.itsecuritynews.info/uae-target-of-cyber-attacks-after-israel-deal-official-says/?utm_source=dlvr.it&utm_medium=blogger

Drug dealers are selling Pfizer COVID vaccines on the darkweb

Read the original article: Drug dealers are selling Pfizer COVID vaccines on the darkweb While the United Kingdom announced the distribution of the COVID-19 vaccine to the population drug dealers is selling ‘Pfizer COVID Vaccines.’ The UK became the first… Read more → The post Drug dealers are selling Pfizer COVID vaccines on the darkweb first appeared on IT Security News.
https://www.itsecuritynews.info/drug-dealers-are-selling-pfizer-covid-vaccines-on-the-darkweb/?utm_source=dlvr.it&utm_medium=blogger

New Turla Crutch Backdoor Exfiltrate Stolen Documents to Dropbox With Turla Hacking Tools

The cybersecurity researchers of ESET has identified an undocumented backdoor and document stealer that was dubbed as “Turla Crutch” by its founder. The main motive of the threat actor is to attribute to the ill-famed Russian hacker group Turla. The experts reported that this backdoor was used from 2015 to early 2020. Researchers noted that […] The post New Turla Crutch Backdoor Exfiltrate Stolen Documents to Dropbox With Turla Hacking Tools appeared first on Cyber Security News.
https://cybersecuritynews.com/new-turla-crutch-backdoor/?utm_source=dlvr.it&utm_medium=blogger