Microsoft is currently investigating reports of a remote code execution vulnerability in MSHTML that affects Microsoft Windows. The exploitation of this vulnerability may allow a remote...
Running a security operation is now a heavier task than ever before. Assets are moving targets because so many employees are still working from home —...
As we continue to careen down an uncertain path, it’s now primarily expected that hybrid work is here to stay. While this flexible approach to the...
After nearly two decades, one of the most recognizable software brands is getting a new name. Acronis True Image, the leading personal cyber protection solution, is...
FIN7 was observed using Windows 11 themes to lure recipients in a recent phishing campaign targeting a PoS provider. What was found? Users worldwide are excited and curious...
We have malware-as-a-service and ransomware-as-a-service, now get ready for Dropper-as-a-Service (DaaS). Cybercriminals are an ambitious breed and to maximize their profits, they are leveraging DaaS to...
A new malware family has been discovered that uses Common Log File System (CLFS) to stay undetected. Named PRIVATELOG, this malware uses another malware—StashLog—as its installer. What’s...
The Jenkins project says it has fallen prey to widespread attacks targeting a critical vulnerability in Confluence, Atlassian’s team collaboration software. Attackers compromised Jenkins’ deprecated Confluence...
The Securities and Exchange Commission (SEC) has sanctioned eight financial services firms for cybersecurity failures that resulted in email account takeovers exposing the personal information of...
Hackers have released proof-of-concept code that exploits a recently demonstrated vulnerability in older but still widely used versions of Ghostscript, the popular server-side image conversion software package. Security...