Security

MicrosoftSecurity

Storm-0978 attacks reveal financial and espionage motives

Credit to Author: Microsoft Threat Intelligence| Date: Tue, 11 Jul 2023 17:30:00 +0000

Microsoft has identified a phishing campaign conducted by the threat actor tracked as Storm-0978 targeting defense and government entities in Europe and North America. The campaign involved the abuse of CVE-2023-36884, which included a zero-day remote code execution vulnerability exploited via Microsoft Word documents.

The post Storm-0978 attacks reveal financial and espionage motives appeared first on Microsoft Security Blog.

Read More
MicrosoftSecurity

Meet unprecedented security challenges by leveraging MXDR services

Credit to Author: Microsoft Security Experts| Date: Mon, 10 Jul 2023 16:00:00 +0000

Microsoft is excited to announce the general availability of Microsoft Defender Experts for XDR, a first-party MXDR offering that gives security teams air cover with end-to-end protection and expertise.

The post Meet unprecedented security challenges by leveraging MXDR services appeared first on Microsoft Security Blog.

Read More
MalwareBytesSecurity

Apple issues Rapid Security Response for zero-day vulnerability

Categories: Exploits and vulnerabilities

Categories: News

Tags: Apple

Tags: Safari

Tags: WebKit

Tags: macOS

Tags: iOS

Tags: iPadOs

Tags: CVE-2023-37450

Tags: drive-by

Tags: code execution

Apple has issued an update for a zero-day vulnerability in the WebKit browser engine which may be actively exploited.

(Read more…)

The post Apple issues Rapid Security Response for zero-day vulnerability appeared first on Malwarebytes Labs.

Read More
MalwareBytesSecurity

“TootRoot” Mastodon vulnerabilities fixed: Admins, patch now!

Categories: Personal

Tags: tootroot

Tags: mastodon

Tags: server

Tags: patch

Tags: update

Tags: CVE

Tags: flaw

Tags: vulnerability

Tags: social media

Tags: network

Tags: networking

We take a look at a collection of issues (now patched) which were affecting Mastodon servers. It’s time to apply the fix for TootRoot.

(Read more…)

The post “TootRoot” Mastodon vulnerabilities fixed: Admins, patch now! appeared first on Malwarebytes Labs.

Read More
MalwareBytesSecurity

Threatening rogue finance apps removed from the Apple Store

Categories: Personal

Tags: app

Tags: finance

Tags: india

Tags: loan

Tags: rogue

Tags: Apple Store

Tags: play store

Tags: google

Tags: threaten

Tags: blackmail

Tags: sextortion

Tags: fake

Tags: deepfake

Tags: deepfakes

Tags: morph

Multiple finance apps have been removed from the App Store after making dubious charges and issuing blackmail threats and other awful behavior.

(Read more…)

The post Threatening rogue finance apps removed from the Apple Store appeared first on Malwarebytes Labs.

Read More