BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Chrome Extension Compromises Highlight Software Supply Challenges
/in General NewsThe Christmas Eve compromise of data-security firm Cyberhaven’s Chrome extension spotlights the challenges in shoring up third-party software supply chains.
darkreading – Read More
This Trusted App Helps Sluggish PCs Work Faster
/in General NewsCCleaner speeds up sluggish PCs by clearing junk files, fixing registry issues, and optimizing performance.
Security | TechRepublic – Read More
Atos, contractor for French military and intelligence agencies, dismisses ransomware attack claims
/in General NewsAtos, the company that secures communications for France’s military and intelligence services, says a ransomware group’s claims are “unfounded.”
The Record from Recorded Future News – Read More
In Other News: Volkswagen Data Leak, DoubleClickjacking, China Denies Hacking US Treasury
/in General NewsNoteworthy stories that might have slipped under the radar: location data of 800,000 electric Volkswagen cars leaked, DoubleClickjacking attack, China denies hacking US Treasury.
The post In Other News: Volkswagen Data Leak, DoubleClickjacking, China Denies Hacking US Treasury appeared first on SecurityWeek.
SecurityWeek – Read More
Exploit Code Published for Potentially Dangerous Windows LDAP Vulnerability
/in General NewsProof-of-concept (PoC) code was published for CVE-2024-49113, a denial-of-service (DoS) vulnerability in Windows LDAP.
The post Exploit Code Published for Potentially Dangerous Windows LDAP Vulnerability appeared first on SecurityWeek.
SecurityWeek – Read More
FireScam Android Malware Packs Infostealer, Spyware Capabilities
/in General NewsThe FireScam Android infostealer monitors app notifications and harvests credentials and financial data and sends it to a Firebase database.
The post FireScam Android Malware Packs Infostealer, Spyware Capabilities appeared first on SecurityWeek.
SecurityWeek – Read More
New York Hospital Says Ransomware Attack Data Breach Impacts 670,000
/in General NewsRichmond University Medical Center has been investigating a ransomware attack since May 2023 and it recently determined that it affects 670,000 people.
The post New York Hospital Says Ransomware Attack Data Breach Impacts 670,000 appeared first on SecurityWeek.
SecurityWeek – Read More
LDAPNightmare PoC Exploit Crashes LSASS and Reboots Windows Domain Controllers
/in General NewsA proof-of-concept (PoC) exploit has been released for a now-patched security flaw impacting Windows Lightweight Directory Access Protocol (LDAP) that could trigger a denial-of-service (DoS) condition.
The out-of-bounds reads vulnerability is tracked as CVE-2024-49113 (CVSS score: 7.5). It was addressed by Microsoft as part of Patch Tuesday updates for December 2024, alongside CVE-2024-49112 (
The Hacker News – Read More
TotalAV VPN vs Surfshark: Which VPN Should You Choose?
/in General NewsTotalAV combines a simple VPN with antivirus software, while Surfshark offers a standalone VPN with better features and faster speeds.
Security | TechRepublic – Read More
Critical Deadline: Update Old .NET Domains Before January 7, 2025 to Avoid Service Disruption
/in General NewsMicrosoft has announced that it’s making an “unexpected change” to the way .NET installers and archives are distributed, requiring developers to update their production and DevOps infrastructure.
“We expect that most users will not be directly affected, however, it is critical that you validate if you are affected and to watch for downtime or other kinds of breakage,” Richard Lander, a program
The Hacker News – Read More