A team of security researchers at Microsoft discovered a potentially serious vulnerability in the Bluetooth-supported version of Google's Titan Security Keys that could not be patched with a software update.However, users do not need to worry as Google has announced to offer a free replacement for the affected Titan Security Key dongles.In a security advisory published … [Read more...] about Bluetooth Flaw Found in Google Titan Security Keys; Get Free Replacement
Flaw
Microsoft Releases Patches For A Critical ‘Wormable Flaw’ and 78 Other Issues
It's Patch Tuesday—the day when Microsoft releases monthly security updates for its software.Microsoft has software updates to address a total of 79 CVE-listed vulnerabilities in its Windows operating systems and other products, including a critical wormable flaw that can propagate malware from computer to computer without requiring users' interaction.Out of 79 vulnerabilities, … [Read more...] about Microsoft Releases Patches For A Critical ‘Wormable Flaw’ and 78 Other Issues
Hackers Used WhatsApp 0-Day Flaw to Secretly Install Spyware On Phones
Whatsapp has recently patched a severe vulnerability that was being exploited by attackers to remotely install surveillance malware on a few "selected" smartphones by simply calling the targeted phone numbers over Whatsapp audio call.Discovered, weaponized and then sold by the Israeli company NSO Group that produces the most advanced mobile spyware on the planet, the WhatsApp … [Read more...] about Hackers Used WhatsApp 0-Day Flaw to Secretly Install Spyware On Phones
Unpatched Flaw in UC Browser Apps Could Let Hackers Launch Phishing Attacks
A bug hunter has discovered and publicly disclosed details of an unpatched browser address bar spoofing vulnerability that affects popular Chinese UC Browser and UC Browser Mini apps for Android.Developed by Alibaba-owned UCWeb, UC Browser is one of the most popular mobile browsers, specifically in China and India, with a massive user base of more than half a billion users … [Read more...] about Unpatched Flaw in UC Browser Apps Could Let Hackers Launch Phishing Attacks
Critical Flaw in Cisco Elastic Services Controller Allows Full System Takeover
Cisco has patched a critical flaw in its virtualized function automation tool, Cisco Elastic Services Controller. Source link … [Read more...] about Critical Flaw in Cisco Elastic Services Controller Allows Full System Takeover
Pre-Installed Software Flaw Exposes Most Dell Computers to Remote Hacking
If you use a Dell computer, then beware — hackers could compromise your system remotely.Bill Demirkapi, a 17-year-old independent security researcher, has discovered a critical remote code execution vulnerability in the Dell SupportAssist utility that comes pre-installed on most Dell computers.Dell SupportAssist, formerly known as Dell System Detect, checks the health of your … [Read more...] about Pre-Installed Software Flaw Exposes Most Dell Computers to Remote Hacking
Hackers Found Exploiting Oracle WebLogic RCE Flaw to Spread Ransomware
Taking advantage of newly disclosed and even patched vulnerabilities has become common among cybercriminals, which makes it one of the primary attack vectors for everyday-threats, like crypto-mining, phishing, and ransomware.As suspected, a recently-disclosed critical vulnerability in the widely used Oracle WebLogic Server has now been spotted actively being exploited to … [Read more...] about Hackers Found Exploiting Oracle WebLogic RCE Flaw to Spread Ransomware
Critical Unpatched Flaw Disclosed in WordPress WooCommerce Extension
If you own an eCommerce website built on WordPress and powered by WooCommerce plugin, then beware of a new, unpatched vulnerability that has been made public and could allow attackers to compromise your online store.A WordPress security company—called "Plugin Vulnerabilities"—that recently gone rogue in order to protest against moderators of the WordPress’s official support … [Read more...] about Critical Unpatched Flaw Disclosed in WordPress WooCommerce Extension
‘Highly Critical’ Unpatched Zero-Day Flaw Discovered In Oracle WebLogic
A team of cybersecurity researchers today published a post warning enterprises of an unpatched, highly critical zero-day vulnerability in Oracle WebLogic server application that some attackers might have already started exploiting in the wild.Oracle WebLogic is a scalable, Java-based multi-tier enterprise application server that allows businesses to quickly deploy new products … [Read more...] about ‘Highly Critical’ Unpatched Zero-Day Flaw Discovered In Oracle WebLogic