CrowdStrike update crashes Windows systems, causes outages worldwide - A faulty component in the latest CrowdStrike Falcon update is crashing Windows systems, impacting various organizations and services across the world, including airports, TV stations,… https://t.co/FEs18zRhoN
Russians plead guilty to involvement in LockBit ransomware attacks - Two Russian nations have pleaded guilty to involvement in many LockBit ransomware attacks, which targeted victims worldwide and across the United States. [...] - https://t.co/N1ROkT4i2k
Major Microsoft 365 outage caused by Azure configuration change - Microsoft says an Azure configuration change caused a major Microsoft 365 outage on Thursday, affecting customers across the Central US region. [...] - https://t.co/B4lH9RuS27
Revolver Rabbit gang registers 500,000 domains for malware campaigns - A cybercriminal gang that researchers track as Revolver Rabbit has registered more than 500,000 domain names for infostealer campaigns that target Windows and macOS systems. [...] - https://t.co/22wPMYm5CD
SolarWinds fixes 8 critical bugs in access rights audit software - SolarWinds has fixed eight critical vulnerabilities in its Access Rights Manager (ARM) software, six of which allowed attackers to gain remote code execution (RCE) on vulnerable devices. … https://t.co/Cu9F6iSH4r
Microsoft fixes bug blocking Windows 11 Photos from starting - Microsoft has fixed a known issue preventing the Microsoft Photos app from starting on some Windows 11 22H2 and 23H2 systems. [...] - https://t.co/hzZLfEZwSD
Critical Cisco bug lets hackers add root users on SEG devices - Cisco has fixed a critical severity vulnerability that lets attackers add new users with root privileges and permanently crash Security Email Gateway (SEG) appliances using emails with malic… https://t.co/xKVuCfZ3DS
Microsoft: Windows 11 23H2 now available for all eligible devices - Microsoft says the Windows 11 2023 Update has entered the broad deployment phase and is now available to all seekers on eligible systems. [...] - https://t.co/UVxGCPu3nK
Notorious FIN7 hackers sell EDR killer to other threat actors - The notorious FIN7 hacking group has been spotted selling its custom "AvNeutralizer" tool, used to evade detection by killing enterprise endpoint protection software on corporate networks. [… https://t.co/DXMmAKFkUx
Exchange Online adds Inbound DANE with DNSSEC for security boost - Microsoft is rolling out inbound SMTP DANE with DNSSEC for Exchange Online in public preview, a new capability to boost email integrity and security. [...] - https://t.co/hW9XSCRjfL
Cisco SSM On-Prem bug lets hackers change any user's password - Cisco has fixed a maximum severity vulnerability that allows attackers to change any user's password on vulnerable Cisco Smart Software Manager On-Prem (Cisco SSM On-Prem) license servers, i… https://t.co/IzMuZ3K0q9
Over 400,000 Life360 user phone numbers leaked via unsecured API - A threat actor has leaked a database containing the personal information of 442,519 Life360 customers collected by abusing a flaw in the login API. [...] - https://t.co/6Y66jgBFpQ
Yacht giant MarineMax data breach impacts over 123,000 people - MarineMax, self-described as the world's largest recreational boat and yacht retailer, is notifying over 123,000 customers whose personal information was stolen in a March security breach cl… https://t.co/6JMMGCKRoC
5 steps to automate user access reviews and simplify IT compliance - While SaaS tools are a boon for worker productivity, they introduce complexity when it comes to IT audits and compliance. Learn more from Nudge Security about automating user access rev… https://t.co/vTGaPiea2r
Kaspersky offers free security software for six months in U.S. goodbye - Kaspersky is offering free security products for six months and tips for staying safe as a parting gift to consumers in the United States. [...] - https://t.co/npaL1YxyHr
CISA warns critical Geoserver GeoTools RCE flaw is exploited in attacks - CISA is warning that a critical GeoServer GeoTools remote code execution flaw tracked as CVE-2024-36401 is being actively exploited in attacks. [...] - https://t.co/0PjcYroSZu
Email addresses of 15 million Trello users leaked on hacking forum - A threat actor has released over 15 million email addresses associated with Trello accounts that were collected using an unsecured API in January. [...] - https://t.co/HLEzRt1mLE
Microsoft announces new Windows 'checkpoint' cumulative updates - Microsoft will introduce checkpoint cumulative updates starting in late 2024 for systems running devices running Windows Server 2025 and Windows 11, version 24H2 or later. [...] - https://t.co/Pw5TDQsct4
Rite Aid says June data breach impacts 2.2 million people - Rite Aid, the third-largest drugstore chain in the United States, says that 2.2 million customers' personal information was stolen last month in what it described as a "data security incident." … https://t.co/TEBWy3PdG4
Microsoft links Scattered Spider hackers to Qilin ransomware attacks - Microsoft says the Scattered Spider cybercrime gang has added Qilin ransomware to its arsenal and is now using it in attacks. [...] - https://t.co/GHuX5OJlDI