As Geopolitical Tensions Mount, Iran’s Cyber Operations Grow

Increasing attacks by the OilRig/APT34 group linked to Iran’s Ministry of Intelligence and Security show that the nation’s capabilities are growing, and targeting regional allies and enemies alike.

darkreading – ​Read More

Patch Issued for Critical VMware vCenter Flaw Allowing Remote Code Execution

Broadcom on Tuesday released updates to address a critical security flaw impacting VMware vCenter Server that could pave the way for remote code execution.
The vulnerability, tracked as CVE-2024-38812 (CVSS score: 9.8), has been described as a heap-overflow vulnerability in the DCE/RPC protocol.
“A malicious actor with network access to vCenter Server may trigger this vulnerability by sending a

The Hacker News – ​Read More

Zero-Click RCE Bug in macOS Calendar Exposes iCloud Data

A researcher bypassed the Calendar sandbox, Gatekeeper, and TCC in a chain attack that allowed for wanton theft of iCloud photos.

darkreading – ​Read More

Hundreds of Pagers Exploded in Lebanon and Syria in a Deadly Attack. Here’s What We Know.

Very small explosive devices may have been built into the pagers prior to their delivery to Hezbollah, and then all remotely triggered simultaneously.

The post Hundreds of Pagers Exploded in Lebanon and Syria in a Deadly Attack. Here’s What We Know. appeared first on SecurityWeek.

SecurityWeek – ​Read More

Russia targets Harris campaign with wave of fake videos

Post Content

The Record from Recorded Future News – ​Read More

‘Marko Polo’ Creates Globe-Spanning Cybercrime Juggernaut

The Eastern European group is actively expanding its financial fraud activities, with its pipelines representing a veritable Silk Road for the transfer of cryptocurrency, and lucrative and exploitable data.

darkreading – ​Read More

Discord launches end-to-end encrypted voice and video chats

Discord will now offer audio and video calls that even the company won’t be able to listen in on.

© 2024 TechCrunch. All rights reserved. For personal use only.

Security News | TechCrunch – ​Read More

AT&T to pay $13 million FCC settlement for 2023 data breach

Post Content

The Record from Recorded Future News – ​Read More

Apple Abandons Spyware Suit to Avoid Sharing Cyber Secrets

Despite more US sanctions against spyware operators, Apple decided the cost in terms of disclosures about its own anti-spyware efforts was too great.

darkreading – ​Read More

The Mystery of Hezbollah’s Deadly Exploding Pagers

At least eight people have been killed and more than 2,700 people have been injured in Lebanon by exploding pagers. Experts say the blasts point toward a supply chain compromise, not a cyberattack.

Security Latest – ​Read More