PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Two New Chrome 0-Days Under Active Attacks – Update Your Browser

jeudi 12 novembre 2020 à 04:36
Google has patched two more zero-day flaws in the Chrome web browser for desktop, making it the fourth and fifth actively exploited vulnerabilities addressed by the search giant in recent weeks. The company released 86.0.4240.198 for Windows, Mac, and Linux, which it said will be rolling out over the coming days/weeks to all users. Tracked as CVE-2020-16013 and CVE-2020-16017, the flaws were

Over 2800 e-Shops Running Outdated Magento Software Hit by Credit Card Hackers

mercredi 11 novembre 2020 à 11:50
A wave of cyberattacks against retailers running the Magento 1.x e-commerce platform earlier this September has been attributed to one single group, according to the latest research. "This group has carried out a large number of diverse Magecart attacks that often compromise large numbers of websites at once through supply chain attacks, such as the Adverline incident, or through the use of

Microsoft Releases Windows Security Updates For Critical Flaws

mercredi 11 novembre 2020 à 11:09
Microsoft formally released fixes for 112 newly discovered security vulnerabilities as part of its November 2020 Patch Tuesday, including an actively exploited zero-day flaw disclosed by Google's security team last week. The rollout addresses flaws, 17 of which are rated as Critical, 93 are rated as Important, and two are rated Low in severity, once again bringing the patch count over 110 after

Watch Out! New Android Banking Trojan Steals From 112 Financial Apps

mardi 10 novembre 2020 à 08:35
Four months after security researchers uncovered a "Tetrade" of four Brazilian banking Trojans targeting financial institutions in Brazil, Latin America, and Europe, new findings show that the criminals behind the operation have expanded their tactics to infect mobile devices with spyware. According to Kaspersky's Global Research and Analysis Team (GReAT), the Brazil-based threat group Guildma

Worried About SaaS Misconfigurations? Check These 5 Settings Everybody Misses

lundi 9 novembre 2020 à 15:01
Enterprises depend on SaaS applications for countless functions, like collaboration, marketing, file sharing, and more. But problematically, they often lack the resources to configure those apps to prevent cyberattacks, data exfiltration, and other risks. Catastrophic and costly data breaches result from SaaS security configuration errors. The Verizon 2020 Data Breach Investigations Report found