2020

FBI: Beware of banking trojans and fake mobile banking apps

The Internet Crime Complaint Center (IC3) and Federal Bureau of Investigation (FBI) issued a new warning that cyber actors are using banking trojans and fake mobile banking apps to steal your banking information. In the new public service announcement (PSA), the FBI highlights the rapid increase (50%) in mobile banking usage since the beginning of

FBI: Beware of banking trojans and fake mobile banking apps Read More »

Snake ransomware infects energy company giant

Major European energy company giant Enel Group was a target of a recent ransomware attack that impacted its internal network. The Enel Group is an Italian energy company active in the electricity generation and distribution sectors, as well as distribution of natural gas.

Snake ransomware infects energy company giant Read More »

GnuTLS patches TLS vulnerability that could cause MITM attack

The GNU Transport Layer Security Library (GnuTLS) patched a vulnerability hidden in code for nearly two years. The issue applies to a flaw in how TLS 1.3 session resumption works without a master key. As a result, an attacker could exploit and launch man-in-the-middle (MITM) attacks.

GnuTLS patches TLS vulnerability that could cause MITM attack Read More »

Microsoft June 2020 Security Updates (and a Critical Adobe Flash patch)

Microsoft released the June 2020 Security Updates that includes 128 unique vulnerability fixes, 11 of those rated critical. In addition, Adobe patched a Critical vulnerability in Adobe Flash.

Microsoft June 2020 Security Updates (and a Critical Adobe Flash patch) Read More »

CallStranger UPnP vulnerability affects multiple internet-facing products

The CERT Coordination Center issued a new advisory for a UPnP configuration vulnerability CVE-2020-12695 that could allow an attacker to abuse devices and send traffic to arbitrary destinations. As a result, devices connected to the internet with UPnP enabled could expose additional vulnerabilities that could lead to amplified DDoS attacks and data loss.

CallStranger UPnP vulnerability affects multiple internet-facing products Read More »

Mozilla releases Firefox 77 with new DevTool improvements, security updates

The Mozilla Foundation has released Firefox 77 with new DevTool improvements and web platform updates. The update also includes fixes for multiple vulnerabilities.

Mozilla releases Firefox 77 with new DevTool improvements, security updates Read More »