Category: News

Guess Fashion Brand Deals With Data Loss After Ransomware Attack

An attack on Guess compromised the personal and banking data of 1,300 victims.

Adobe Patches 11 Critical Bugs in Popular Acrobat PDF Reader

Adobe July patch roundup includes fixes for its ubiquitous and free PDF reader Acrobat 2020 and other software such as Illustrator and Bridge.

‘Charming Kitten’ APT Siphons Intel From Mid-East Scholars

Professors, journalists and think-tank personnel, beware strangers bearing webinars: It’s the focus of a particularly sophisticated, and chatty, phishing campaign.

New CISA Director Confirmed, White House Gains Cyber-Director

Jen Easterly, former NSA official and Morgan Stanley vet, will take up the lead at CISA as the ransomware scourge rages on.

Is Remote Desktop Protocol Secure? It Can Be

Matt Dunn, associate managing director in Kroll’s Cyber Risk practice, discusses options for securing RDP, which differ significantly in terms of effectiveness.

SolarWinds Issues Hotfix for Zero-Day Flaw Under Active Attack

Microsoft alerted the company to a security vulnerability in its Serv-U Managed File Transfer and Secure FTP products that a cyberattacker is using to target a “limited” amount of customers.

BIOPASS RAT Uses Live Streaming Steal Victims’ Data

The malware has targeted Chinese gambling sites with fake app installers.

WordPress File Management Plugin Riddled with Critical Bugs

The bugs allow a range of attacks on websites, including deleting blog pages and remote code execution.

Critical RCE Vulnerability in ForgeRock OpenAM Under Active Attack

The attacks are enabled by an unpatched security vulnerability in ForgeRock’s Access Management, a popular platform that front-ends web apps and remote-access setups.

Kaseya Patches Zero-Days Used in REvil Attacks

The security update addresses three VSA vulnerabilities used by the ransomware gang to launch a worldwide supply-chain attack on MSPs and their customers.