22 Sep, 2024

New CMoon USB worm targets Russians in data theft attacks

A new self-spreading worm named ‘CMoon,’ capable of stealing account credentials and other data, has been distributed in Russia since early July 2024 via a compromised gas supply company website. According to Kaspersky researchers who discovered the campaign, CMoon can perform a broad range of functions, including loading additional payloads, snapping screenshots, and launching distributed denial of […]

3 mins read

Best lightweight Linux distro of 2024

The best lightweight Linux distros make it simple and easy to run Linux on older PCs which have relatively limited computing power. This means you shouldn’t expect these distros to provide blistering performance, but they can allow you to bring an old computer or two back to life – and use – as a dedicated […]

18 mins read

Diablo IV Season of the Infernal Hordes Now Live

The latest season for Diablo IV is now live, titled Season of the Infernal Hordes. In this season, players will get to experience a new wave-based feature called Infernal Hordes, where you can slay waves of enemies time and time again to gain rewards. For the first time in Diablo IV’s history, this feature will be […]

2 mins read

PUBG: Battlegrounds New Update Goes Live

KRAFTON, the developers of PUBG: BATTLEGROUNDS has announced the latest update for the game, which is now live on PC. This update is a game changer for any who utilize the PUBG Clans system. PUBG Clans will now be able to unlock weekly rewards by completing challenges and missions. There are also new weapon attachments for those […]

3 mins read

Proton VPN adds ‘Discreet Icons’ to hide app on Android devices

Proton VPN has announced a series of updates to its Windows and Android apps to help users combat censorship, circumvent blocks, and protect themselves from authoritarian governments due to using forbidden tools. One of the standout features is ‘Discreet Icon,’ a new setting allowing users to disguise the Proton VPN app icon and make it […]

2 mins read

iPhone Users On T-Mobile Will Be Able To Enjoy Satellite Messaging With iOS 18 Later This Year

Apple made its mark by introducing satellite connectivity in 2022 on the iPhone 14. While the feature was well received, the functionality was limited to text for emergency services. With iOS 18, the tech giant shared plans to expand messages via satellite and make services available when there is a lack of Wi-Fi or cellular connections. Some users have […]

2 mins read

Windows Update downgrade attack “unpatches” fully-updated systems

SafeBreach security researcher Alon Leviev revealed at Black Hat 2024 that two zero-days could be exploited in downgrade attacks to “unpatch” fully updated Windows 10, Windows 11, and Windows Server systems and reintroduce old vulnerabilities. Microsoft issued advisories on the two unpatched zero-days (tracked as CVE-2024-38202 and CVE-2024-21302) in coordination with the Black Hat talk, […]

3 mins read

macOS Sequoia brings better Gatekeeper, stalkerware protections

Apple’s macOS Sequoia, now in beta testing, will make it harder to bypass Gatekeeper warnings and add system alerts for potential stalkerware threats. Gatekeeper is a security feature that checks all apps downloaded from the Internet to see if they’re developer-signed (approved by Apple) and notarized by checking an extended attribute named com.apple.quarantine that is […]

3 mins read

Critical Progress WhatsUp RCE flaw now under active exploitation

Threat actors are actively attempting to exploit a recently fixed Progress WhatsUp Gold remote code execution vulnerability on exposed servers for initial access to corporate networks. The vulnerability leveraged in these attacks is CVE-2024-4885, a critical-severity (CVSS v3 score: 9.8) unauthenticated remote code execution flaw impacting Progress WhatsUp Gold 23.1.2 and older. Proof-of-concept (PoC) exploits for CVE-2024-4885 are […]

3 mins read

Microsoft 365 anti-phishing feature can be bypassed with CSS

Researchers have demonstrated a method to bypass an anti-phishing measure in Microsoft 365 (formerly Office 365), elevating the risk of users opening malicious emails. Specifically, the anti-phishing measure that can be hidden is the ‘First Contact Safety Tip,’ which warns email recipients on Outlook when they receive a message from an unfamiliar address. Certitude analysts who discovered […]

3 mins read