Moves to make it easier to use contactless payments on public transport systems have eroded the security of mobile wallets, security researchers have discovered. Before 2019, Apple Pay and Samsung...
Microsoft has patched a reflected cross-site scripting (XSS) vulnerability in Exchange Server. Tracked as CVE-2021-41349, the flaw was unearthed by security researcher Rahul Maini and Harsh Jaiswal, application security engineers at Vimeo. “Since...
Employee performance and trust established in new hybrid working models could be under threat from an increase in the implementation of remote monitoring measures, according to...
Microsoft has released out-of-band updates to address authentication failures related to Kerberos delegation scenarios impacting Domain Controllers (DC) running supported versions of Windows Server. On impacted systems, end-users...
The US Department of Education and Department of Homeland Security (DHS) were urged this week to more aggressively strengthen cybersecurity protections at K-12 schools across the...
Likely state-backed hackers used the now-patched flaw. Google’s Threat Analysis Group (TAG) has revealed that hackers targeting visitors to websites in Hong Kong were using a...
QAKBOT is a prevalent information-stealing malware that was first discovered in 2007. In recent years, its detection has become a precursor to many critical and widespread ransomware...
The TrickBot gang (aka ITG23 group) is working together with the TA551 (aka Shatak) threat group, IBM X-Force researchers have recently established in research. According to...
QakBot, also known as QBot, has existed for over a decade. First found in the wild in 2007, the trojan has since been continually maintained and...
The infamous North Korea state-sponsored Lazarus APT was recently found targeting IT supply chains. It used the MATA framework and propagated a new strain of the...