15 Nov, 2024

MHTML Exploited By APT Group Void Banshee

Security experts have uncovered a critical remote code execution (RCE) vulnerability, identified as CVE-2024-38112, within the MHTML protocol handler.  This vulnerability, dubbed ZDI-CAN-24433, was reported from CVE-2024-38112 to Microsoft upon discovery (and later patched by the tech giant), with evidence suggesting it was actively exploited by the advanced persistent threat (APT) group Void Banshee.  Known […]

2 mins read

Kaspersky offers free security software for six months in U.S. goodbye

Kaspersky is offering free security products for six months and tips for staying safe as a parting gift to consumers in the United States. The company decided to close its business and lay off employees in the U.S. after the U.S. government added Kaspersky to the Entity List, a catalog of “foreign individuals, companies, and […]

3 mins read

The Sims 5 Allegedly Canceled, According to Developer Resume

New information spotted online suggests that The Sims 5, also known as Project Rene, has been allegedly canceled. Instead, the team is shifting their focus to working on The Sims 4, where content is consistently produced for the game. Lovestruck is the latest upcoming expansion for The Sims 4 and is due to be released […]

2 mins read

Vulnerabilities exploited faster than ever, says Cloudflare

By the time you read this article, a zero-day CVE is likely getting exploited. According to researchers with Cloudflare, a newly disclosed vulnerability comes under attack at an average of 22 minutes. The internet backbone provider said attackers are more active than ever and are able to jump onto security vulnerabilities with malware exploits at […]

2 mins read

The New Color Of The iPhone 16 Pro Could Simply Be ‘Rose’, While Rose Gold Is Out Of The Equation

A new rumor coming straight out of China claims that Apple plans to introduce a brand-new ‘Rose’ color for the iPhone 16 Pro. It is still unclear if it will be the only special color the company will release this year alongside the standard Black and White. While this is not the first time we […]

2 mins read

Email addresses of 15 million Trello users leaked on hacking forum

A threat actor has released over 15 million email addresses associated with Trello accounts that were collected using an unsecured API in January. Trello is an online project management tool owned by Atlassian. Businesses commonly use it to organize data and tasks into boards, cards, and lists. In January, GeekFeed reported that a threat actor known as ’emo’ […]

3 mins read

Kaspersky is shutting down its business in the United States

Russian cybersecurity company and antivirus software provider Kaspersky Lab will start shutting down operations in the United States on July 20. Company also confirmed that it will lay off its U.S.-based employees. Independent cybersecurity journalist Kim Zetter first reported that this will affect “less than 50 employees in the U.S.” This comes after the U.S. Treasury Department’s […]

2 mins read

Attackers Exploit URL Protections to Disguise Phishing Links

Cybercriminals are abusing legitimate URL protection services to disguise malicious phishing links, Barracuda researchers have revealed. The firm observed phishing campaigns using three different URL protection services to mask phishing URLs and send victims to websites designed to harvest their credentials. The researchers believe these campaigns have targeted hundreds of companies to date, if not […]

3 mins read

Hackers use PoC exploits in attacks 22 minutes after release

Threat actors are quick to weaponize available proof-of-concept (PoC) exploits in actual attacks, sometimes as quickly as 22 minutes after exploits are made publicly available. That is according to Cloudflare’s Application Security report for 2024, which covers activity between May 2023 and March 2024 and highlights emerging threat trends. Cloudflare, which currently processes an average […]

2 mins read

Fallout: London won’t be available for Epic Games Store players initially thanks to Bethesda’s mod-breaking update

Bethesda’s “next gen” update for Fallout 4 continues to cause problems. Released in April, two years after it was announced, the 14GB patch was impressive due to how little it actually changed, aside from breaking everyone’s precious mods. The timing couldn’t have been worse, either, coinciding as it did with the planned arrival of the […]

2 mins read