Tag: zero-day
-
August Patch Tuesday proves busy with six zero-days to fix
First seen on computerweekly.com Jump to article: www.computerweekly.com/news/366603064/August-Patch-Tuesday-proves-busy-with-six-zero-days-to-fix
-
Microsoft corrects six zero-days for August Patch Tuesday
Admins can address most of the zero-days with a cumulative update, but of more concern is the lack of patches for two vulnerabilities demonstrated at … First seen on techtarget.com Jump to article: www.techtarget.com/searchwindowsserver/news/366603155/Microsoft-corrects-six-zero-days-for-August-Patch-Tuesday
-
North Korean hackers exploited Chrome zero-day to steal crypto
First seen on techcrunch.com Jump to article: techcrunch.com/2024/08/30/north-korean-hackers-exploited-chrome-zero-day-to-steal-crypto/
-
Recently patched Windows flaw CVE-2024-43461 was actively exploited as a zero-day before July 2024
Microsoft warns that a recently patched Windows flaw, tracked as CVE-2024-43461, was actively exploited as a zero-day before July 2024. Microsoft warn… First seen on securityaffairs.com Jump to article: securityaffairs.com/168467/hacking/windows-cve-2024-43461-actively-exploited-before-july-2024.html
-
CISA warns of Windows flaw used in infostealer malware attacks
CISA has ordered U.S. federal agencies to secure their systems against a recently patched Windows MSHTML spoofing zero-day bug exploited by the Void B… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/cisa-warns-of-windows-flaw-used-in-infostealer-malware-attacks/
-
Microsoft Discloses 4 Zero-Days in September Update
First seen on darkreading.com Jump to article: www.darkreading.com/application-security/microsoft-discloses-4-zero-days-in-september-update
-
Microsoft confirms second 0-day exploited by Void Banshee APT (CVE-2024-43461)
CVE-2024-43461, a spoofing vulnerability affecting Windows MSHTML a software component used by various apps for rendering render web pages on Windows … First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/09/16/cve-2024-43461-exploited/
-
Windows MSHTML Zero-Day Vulnerability Exploited In The Wild
Adobe released eight security updates in September 2024, addressing 28 vulnerabilities in various products, as ColdFusion received a critical patch to… First seen on gbhackers.com Jump to article: gbhackers.com/windows-mshtml-zero-day-exploit/
-
Windows vulnerability abused braille spaces in zero-day attacks
A recently fixed Windows MSHTML spoofing vulnerability tracked under CVE-2024-43461 is now marked as previously exploited after it was used in attacks… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/windows-vulnerability-abused-braille-spaces-in-zero-day-attacks/
-
Microsoft Says Recent Windows Vulnerability Exploited as Zero-Day
Microsoft warns that a recently patched Windows vulnerability was exploited in the wild as a zero-day prior to July 2024. The post Microsoft Says Rece… First seen on securityweek.com Jump to article: www.securityweek.com/microsoft-says-recent-windows-vulnerability-exploited-as-zero-day/
-
Week in review: Veeam Backup Replication RCE could soon be exploited, Microsoft fixes 4 0-days
Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Veeam Backup Replication RCE flaw may soon be levera… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/09/15/week-in-review-veeam-backup-replication-rce-could-soon-be-exploited-microsoft-fixes-4-0-days/
-
Patch Tuesday for September 2024: Microsoft Catches Four Zero-Day Vulnerabilities
First seen on techrepublic.com Jump to article: www.techrepublic.com/article/patch-tuesday-september-24/
-
Windows 0-day was exploited by North Korea to install advanced rootkit
First seen on arstechnica.com Jump to article: arstechnica.com/
-
In Other News: Possible Adobe Reader Zero-Day, Hijacking Mobi TLD, WhatsApp View Once Exploit
Noteworthy stories that might have slipped under the radar: a possible Adobe Reader zero-day, researchers mistakenly hijack .mobi TLD, and an exploite… First seen on securityweek.com Jump to article: www.securityweek.com/in-other-news-possible-adobe-reader-zero-day-hijacking-mobi-tld-whatsapp-view-once-exploit/
-
Chinese government hackers targeted US internet providers with zero-day exploit, researchers say
Tags: china, exploit, government, group, hacker, Internet, service, software, vulnerability, zero-dayA group of hackers linked to the Chinese government used a previously unknown vulnerability in software to target U.S. internet service providers, sec… First seen on techcrunch.com Jump to article: techcrunch.com/2024/08/27/chinese-government-hackers-targeted-u-s-internet-providers-with-zero-day-exploit-researchers-say/
-
Microsoft Fixes Four Actively Exploited Zero-Days
First seen on infosecurity-magazine.com Jump to article: www.infosecurity-magazine.com/news/microsoft-fixes-four-actively/
-
Microsoft fixes at least four zero-days in September Patch Tuesday
First seen on scmagazine.com Jump to article: www.scmagazine.com/news/microsoft-fixes-at-least-four-zero-days-in-september-patch-tuesday
-
Patch Tuesday: Microsoft Fixes Multiple Zero-Days, Other Vulns
First seen on scmagazine.com Jump to article: www.scmagazine.com/brief/patch-tuesday-microsoft-fixes-multiple-zero-days-other-vulns
-
Adobe fixes Acrobat Reader zero-day with public PoC exploit
A cybersecurity researcher is urging users to upgrade Adobe Acrobat Reader after a fix was released yesterday for a remote code execution zero-day wit… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/security/adobe-fixes-acrobat-reader-zero-day-with-public-poc-exploit/
-
Microsoft Patch Tuesday security updates for September 2024 addressed four actively exploited zero-days
Microsoft Patch Tuesday security updates for September 2024 addressed 79 flaws, including four actively exploited zero-day flaws. Microsoft Patch Tues… First seen on securityaffairs.com Jump to article: securityaffairs.com/168279/security/microsoft-patch-tuesday-sept-2024.html
-
Microsoft’s September 2024 Patch Tuesday Addresses 4 Zero-Days, 79 Vulnerabilities
On September 10, 2024, Microsoft released its latest round of security updates as part of its monthly Patch Tuesday program. This month’s updates addr… First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/09/microsofts-september-2024-patch-tuesday-addresses-4-zero-days-79-vulnerabilities/
-
Microsoft September 2024 Patch Tuesday Fixes 79 Flaws, Including 4 Zero-Days
First seen on hackread.com Jump to article: hackread.com/microsoft-september-2024-patch-tuesday-flaws-update/
-
Adobe patches Acrobat bug, neglects to mention whole zero-day, exploit thing
First seen on theregister.com Jump to article: www.theregister.com/2024/09/12/adobe_acrobat_0day/
-
Microsoft September 2024 Patch Tuesday fixes 4 zero-days, 79 flaws
Today is Microsoft’s September 2024 Patch Tuesday, which includes security updates for 79 flaws, including four actively exploited and one publicly di… First seen on bleepingcomputer.com Jump to article: www.bleepingcomputer.com/news/microsoft/microsoft-september-2024-patch-tuesday-fixes-4-zero-days-79-flaws/
-
North Korea’s ‘Citrine Sleet’ APT Exploits Zero-Day Chromium Bug
Microsoft warned that the DPRK’s latest innovative tack chains together previously unknown browser issues, then adds a rootkit to the mix to gain deep… First seen on darkreading.com Jump to article: www.darkreading.com/vulnerabilities-threats/north-korean-apt-exploits-novel-chromium-windows-bugs-steal-crypto
-
Microsoft fixes 4 exploited zero-days and a code defect that nixed earlier security fixes
September 2024 Patch Tuesday is here and Microsoft has delivered 79 fixes, including those for a handful of zero-days (CVE-2024-38217, CVE-2024-38226,… First seen on helpnetsecurity.com Jump to article: www.helpnetsecurity.com/2024/09/10/cve-2024-38217-cve-2024-43491/
-
Microsoft Fixes Four 0-Days, One Exploited for SIX YEARS
First seen on securityboulevard.com Jump to article: securityboulevard.com/2024/09/patch-tuesday-september-2024-richixbw/
-
Chinese APT Exploits Versa Networks Zero-Day Flaw
The vulnerability impacts versions of Versa Director prior to 22.1.4, and Versa Networks recommends that impacted users update to the fixed version as… First seen on duo.com Jump to article: duo.com/decipher/chinese-apt-exploits-versa-networks-zero-day-flaw
-
North Korean Hackers Deploy FudModule Rootkit via Chrome Zero-Day Exploit
A recently patched security flaw in Google Chrome and other Chromium web browsers was exploited as a zero-day by North Korean actors in a campaign des… First seen on thehackernews.com Jump to article: thehackernews.com/2024/08/north-korean-hackers-deploy-fudmodule.html

