NHS Digital Hints at Exploit Sightings of Arcserve UDP Vulnerabilities

The UK’s National Health Service (NHS) is warning of possible exploitation attempts targeting vulnerabilities in the Arcserve Unified Data Protection (UDP) software, which were disclosed in March and had PoC exploit code released shortly after.

Cyware News – Latest Cyber News – ​Read More

Vermont Passes Data Privacy Law Allowing Consumers to Sue Companies

Vermont has passed one of the strongest comprehensive data privacy laws in the country, which includes a provision allowing individuals to sue companies for violating their privacy rights.

Cyware News – Latest Cyber News – ​Read More

Apple Backports Fix for Zero-Day Exploited in Attacks to Older iPhones

The flaw is a memory corruption issue in Apple’s RTKit real-time operating system that enables attackers with arbitrary kernel read and write capability to bypass kernel memory protections.

Cyware News – Latest Cyber News – ​Read More

Secrecy Concerns Mount Over Spy Powers Targeting US Data Centers

A coalition of digital rights groups is demanding the US declassify records that would clarify just how expansive a major surveillance program really is.

Security Latest – ​Read More

VMware Patches Severe Security Flaws in Workstation and Fusion Products

Multiple security flaws have been disclosed in VMware Workstation and Fusion products that could be exploited by threat actors to access sensitive information, trigger a denial-of-service (DoS) condition, and execute code under certain circumstances.
The four vulnerabilities impact Workstation versions 17.x and Fusion versions 13.x, with fixes available in version 17.5.2 and

The Hacker News – ​Read More

Leveraging DNS Tunneling for Tracking and Scanning

Threat actors are using DNS tunneling as a means to scan for network vulnerabilities and check the success of phishing campaigns, according to new research from Palo Alto Networks.

Cyware News – Latest Cyber News – ​Read More

INC Ransomware Source Code Selling on Hacking Forums for $300,000

The source code of the INC ransomware-as-a-service (RaaS) operation, which has targeted organizations like Xerox Business Solutions, Yamaha Motor Philippines, and Scotland’s National Health Service (NHS), is being sold on hacking forums for $300,000.

Cyware News – Latest Cyber News – ​Read More

Dangerous Google Chrome Zero-Day Allows Sandbox Escape

Exploit code is circulating for CVE-2024-4761, disclosed less than a week after a similar security vulnerability was disclosed as being used in the wild.

darkreading – ​Read More

Android Malware Poses as WhatsApp, Instagram, Snapchat to Steal Data

By Deeba Ahmed

Android Security Alert- Hackers are disguising malware as popular apps like Instagram and Snapchat to steal your login details. Learn how to identify fake apps and protect yourself from this sneaky cyberattack.

This is a post from HackRead.com Read the original post: Android Malware Poses as WhatsApp, Instagram, Snapchat to Steal Data

Hackread – Latest Cybersecurity, Tech, Crypto & Hacking News – ​Read More

Adobe Patches Critical Flaws in Reader, Acrobat

Adobe documents multiple code execution flaws in a wide range of products, including the widely deployed Adobe Acrobat and Reader software.

The post Adobe Patches Critical Flaws in Reader, Acrobat appeared first on SecurityWeek.

SecurityWeek – ​Read More