Microsoft fixes Teams, Outlook launch failures on ARM Windows PCs

A Critical Bug Fixed: Microsoft Resolves Teams and Outlook Launch Issues on ARM-based Windows PCs In a timely update, Microsoft has addressed a long-standing issue affecting users of its popular productivity apps, Teams and Outlook, on certain ARM-based Windows devices. The bug, which prevented these essential tools from launching after installing recent updates, has been … Read more

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

A Critical Vulnerability in Cisco’s FMC Software Exposes Organizations to Ransomware Attacks A severe flaw in Cisco’s Firepower Management Center (FMC) software has been exploited by attackers to steal sensitive credentials and deploy the Qilin ransomware, putting thousands of organizations at risk. The vulnerability, which was disclosed in July 2023, allows hackers to gain unauthorized … Read more

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

**Critical Patch Cycle Shifts into High Gear as PaperCut Responds to Exploited Vulnerabilities** The cybersecurity landscape has just gotten a lot more intense, with the latest development from paper management software giant PaperCut. The company has replaced emergency patches for two actively exploited vulnerabilities with permanent fixes, affecting an estimated 100,000 organizations worldwide. For those … Read more

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

A China-linked threat actor has been exploiting a critical vulnerability in Sogou Input Method, a widely used input software on Chinese devices, to deploy a sophisticated backdoor known as GRAYRABBIT. The attack vector, attributed to UNC3569, marks a significant escalation of cyber threats targeting the Asian region. The Sogou Input Method is a popular keyboard … Read more

Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

A group of threat actors has exploited a combination of vulnerabilities in JFrog Artifactory, a popular software repository manager, to gain administrative control and plant backdoors on affected systems. The attack highlights the importance of robust identity management and vulnerability patching in preventing lateral movement within an organization’s network. The attackers’ modus operandi involves chaining … Read more

Trezor: 347,000 users targeted in phishing attacks after Brevo breach

Trezor Scrambles to Contain Phishing Campaign After Brevo Email Provider Breach A staggering 347,000 Trezor customers have been targeted in a recent wave of phishing attacks, with 2,500 users falling prey to malicious emails sent from compromised email accounts. The campaign, which exploited the security breach at third-party email provider Brevo, highlights the vulnerability of … Read more

Cisco FMC Flaws Exploited to Steal Credentials and Deploy Qilin Ransomware

Critical Flaws in Cisco FMC Software Expose Users to Ransomware Attacks and Credential Theft A pair of severe vulnerabilities in Cisco’s Firepower Management Center (FMC) software has left organizations exposed to a range of cyber threats, including ransomware attacks and credential theft. The flaws, which have been actively exploited by attackers, put users at risk … Read more

PaperCut Replaces Emergency Patches With Fixes for Two Actively Exploited Flaws

The print management software company PaperCut has issued emergency patches for two actively exploited vulnerabilities, but instead of replacing them with more comprehensive fixes, they’re providing a new set of patches that address these specific issues. This decision comes as a surprise to security experts, who warn that this approach may not be sufficient to … Read more

China-Linked UNC3569 Exploited Sogou Input Method Flaw to Deploy GRAYRABBIT Backdoor

A sophisticated cyberattack attributed to a China-linked threat actor, UNC3569, has been discovered exploiting a vulnerability in Sogou Input Method, a popular Chinese input method editor (IME) used on millions of devices. The attackers leveraged this weakness to deploy a backdoor known as GRAYRABBIT, highlighting the risks of identity exposure and active attack paths. The … Read more

Attackers Chain JFrog Artifactory Flaws to Gain Admin Control and Plant Backdoors

**Attackers Exploit JFrog Artifactory Flaws, Gain Admin Control and Plant Backdoors** A sophisticated attack has been discovered targeting JFrog Artifactory users, allowing malicious actors to gain admin control and plant backdoors on affected systems. The vulnerability, which was chained with identity exposure, allowed attackers to bypass security measures and establish a foothold in compromised networks. … Read more