PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Self-destructing messages received on 'Signal for Mac' can be recovered later

mercredi 9 mai 2018 à 18:07
It turns out that macOS client for the popular end-to-end encrypted messaging app Signal fails to properly delete disappearing (self-destructing) messages  from the recipient's system, leaving the content of your sensitive messages at risk of getting exposed. For those unaware, the disappearing messages in Signal self-destruct after a particular duration set by the sender, leaving no trace of

Microsoft Adds Support for JavaScript in Excel—What Could Possibly Go Wrong?

mercredi 9 mai 2018 à 15:01
Shortly after Microsoft announced support for custom JavaScript functions in Excel, someone demonstrated what could possibly go wrong if this feature is abused for malicious purposes. As promised last year at Microsoft's Ignite 2017 conference, the company has now brought custom JavaScript functions to Excel to extend its capabilities for better work with data. Functions are written in

Microsoft Patches Two Zero-Day Flaws Under Active Attack

mercredi 9 mai 2018 à 08:14
It's time to gear up for the latest May 2018 Patch Tuesday. Microsoft has today released security patches for a total of 67 vulnerabilities, including two zero-days that have actively been exploited in the wild by cybercriminals, and two publicly disclosed bugs. In brief, Microsoft is addressing 21 vulnerabilities that are rated as critical, 42 rated important, and 4 rated as low severity.

Hackers Found Using A New Way to Bypass Microsoft Office 365 Safe Links

mardi 8 mai 2018 à 19:28
Security researchers revealed a way around that some hacking groups have been found using in the wild to bypass a security feature of Microsoft Office 365, which is originally designed to protect users from malware and phishing attacks. Dubbed Safe Links, the feature has been included in Office 365 software as part of Microsoft's Advanced Threat Protection (ATP) solution that works by replacing

A Simple Tool Released to Protect Dasan GPON Routers from Remote Hacking

mardi 8 mai 2018 à 15:05
Since hackers have started exploiting two recently disclosed unpatched critical vulnerabilities found in GPON home routers, security researchers have now released an unofficial patch to help millions of affected users left vulnerable by their device manufacturer. Last week, researchers at vpnMentor disclosed details of—an authentication bypass (CVE-2018-10561) and a root-remote code execution