“TootRoot” Mastodon vulnerabilities fixed: Admins, patch now!

Categories: Personal

Tags: tootroot

Tags: mastodon

Tags: server

Tags: patch

Tags: update

Tags: CVE

Tags: flaw

Tags: vulnerability

Tags: social media

Tags: network

Tags: networking

We take a look at a collection of issues (now patched) which were affecting Mastodon servers. It’s time to apply the fix for TootRoot.

(Read more…)

The post “TootRoot” Mastodon vulnerabilities fixed: Admins, patch now! appeared first on Malwarebytes Labs.

Read more

New Discord username policy raises user privacy fears

Categories: News

Tags: Discord

Tags: privacy

Tags: username

Tags: discriminator

Tags: DM

Tags: bot

Tags: chat

Tags: change

Tags: changing

Tags: server

Tags: hijack phish

Tags: private

We take a look at the reaction to Discord’s proposed changes to how usernames work, and why many users aren’t happy with the upcoming alterations.

(Read more…)

The post New Discord username policy raises user privacy fears appeared first on Malwarebytes Labs.

Read more

Update your PaperCut application servers now: Exploits in the wild

Categories: News

Tags: PaperCut

Tags: server

Tags: exploit

Tags: attack

Tags: authentication

Tags: update

Tags: patch

We take a look at urgent updates needed for users of PaperCut, after two exploits were found in the wild.

(Read more…)

The post Update your PaperCut application servers now: Exploits in the wild appeared first on Malwarebytes Labs.

Read more

IIS extensions are on the rise as backdoors to servers

Credit to Author: Pieter Arntz| Date: Wed, 27 Jul 2022 13:58:06 +0000

The Microsoft 365 Defender Research Team has warned that attackers are increasingly leveraging Internet Information Services (IIS) extensions as covert backdoors into servers.

The post IIS extensions are on the rise as backdoors to servers appeared first on Malwarebytes Labs.

Read more

Runescape phish claims your email has been changed

Credit to Author: Christopher Boyd| Date: Tue, 31 May 2022 20:08:04 +0000

We take a look at a Runescape-themed phishing mail targeting players of the smash MMORPG title, and explain how they steal the data.

The post Runescape phish claims your email has been changed appeared first on Malwarebytes Labs.

Read more

Clouding the issue: what cloud threats lie in wait in 2022?

Credit to Author: Christopher Boyd| Date: Thu, 17 Mar 2022 13:25:43 +0000

We offer up some thoughts on where new and continuing attacks in the world of cloud may occur, alongside linking some current examples.

The post Clouding the issue: what cloud threats lie in wait in 2022? appeared first on Malwarebytes Labs.

Read more