PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

VMware Issues Security Patches for High-Severity Flaws Affecting Multiple Products

mercredi 16 février 2022 à 12:25
VMware on Tuesday patched several high-severity vulnerabilities impacting ESXi, Workstation, Fusion, Cloud Foundation, and NSX Data Center for vSphere that could be exploited to execute arbitrary code and cause a denial-of-service (DoS) condition. As of writing, there's no evidence that any of the weaknesses are exploited in the wild. The list of six flaws is as follows – <!--adsense-->

EU Data Protection Watchdog Calls for Ban on Pegasus-like Commercial Spyware

mercredi 16 février 2022 à 09:55
The European Union's data protection authority on Tuesday called for a ban on the development and the use of Pegasus-like commercial spyware in the region, calling out the technology's "unprecedented level of intrusiveness" that could endanger users' right to privacy. "Pegasus constitutes a paradigm shift in terms of access to private communications and devices, which is able to affect the very

High-Severity RCE Security Bug Reported in Apache Cassandra Database Software

mercredi 16 février 2022 à 06:18
Researchers have revealed details of a now-patched high-severity security vulnerability in Apache Cassandra that, if left unaddressed, could be abused to gain remote code execution on affected installations. "This Apache security vulnerability is easy to exploit and has the potential to wreak havoc on systems, but luckily only manifests in non-default configurations of Cassandra," Omer Kaspi,

Facebook Agrees to Pay $90 Million to Settle Decade-Old Privacy Violation Case

mercredi 16 février 2022 à 05:32
Meta Platforms has agreed to pay $90 million to settle a lawsuit over the company's use of cookies to allegedly track Facebook users' internet activity even after they had logged off from the platform. In addition, the social media company will be required to delete all of the data it illegally collected from those users. The development was first reported by Variety. <!--adsense--> The

Researchers Link ShadowPad Malware Attacks to Chinese Ministry and PLA

mardi 15 février 2022 à 15:06
Cybersecurity researchers have detailed the inner workings of ShadowPad, a sophisticated and modular backdoor that has been adopted by a growing number of Chinese threat groups in recent years, while also linking it to the country's civilian and military intelligence agencies. "ShadowPad is decrypted in memory using a custom decryption algorithm," researchers from Secureworks said in a report