PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

4 New BlueKeep-like 'Wormable' Windows Remote Desktop Flaws Discovered

mardi 13 août 2019 à 20:22
If you are using any supported version of the Windows operating system, stop everything and install the latest security updates from Microsoft immediately. It has been disclosed that the Windows operating system contains four new critical wormable, remote code execution vulnerabilities in Remote Desktop Services, similar to the previously-fixed 'BlueKeep' vulnerability. Discovered by

Google Discloses 20-Year-Old Unpatched Flaw Affecting All Versions of Windows

mardi 13 août 2019 à 18:15
A Google security researcher has just disclosed details of a 20-year-old unpatched high-severity vulnerability affecting all versions of Microsoft Windows, back from Windows XP to the latest Windows 10. The vulnerability resides in the way MSCTF clients and server communicate with each other, allowing even a low privileged or a sandboxed application to read and write data to a higher

Cerberus: A New Android 'Banking Malware For Rent' Emerges

mardi 13 août 2019 à 14:14
After a few popular Android Trojans like Anubis, Red Alert 2.0, GM bot, and Exobot, quit their malware-as-a-service businesses, a new player has emerged on the Internet with similar capabilities to fill the gap, offering Android bot rental service to the masses. Dubbed "Cerberus," the new remote access Trojan allows remote attackers to take total control over the infected Android devices and

Let Experts Do Their Job – Managed WAF by Indusface

mardi 13 août 2019 à 10:54
WAF (Web Application Firewall) has been the first line of defence when it comes to application security for a while now. Many organizations have adopted WAF in one form or the other and most cases, compliance has been the driver for adoption. But unfortunately, when it comes to the efficacy of WAF in thwarting attacks, it has not lived up to the expectations. In most organizations, WAF has

Epic Games Hit With Class Action Lawsuit Over Hacked 'Fortnite' Accounts

mardi 13 août 2019 à 09:44
Epic Games, the creator of the popular 'Fortnite' video game, is facing a class-action lawsuit from gamers over hacked Fortnite accounts, accusing the company of failing to maintain adequate security measures and notify users of the security breach in a timely manner. The lawsuit, filed by 'Franklin D. Azar and Associates' in the United States District Court in North Carolina on behalf of