Zeljka Zorz
![biohazard](https://img.helpnetsecurity.com/wp-content/uploads/2019/02/09095230/biohazard-400x200.jpg)
Qbot – known channel for ransomware – delivered via phishing and Follina exploit
More than a week has passed since Microsoft acknowledged the existence of the “Follina” vulnerability (CVE-2022-30190), after reports of it being exploited in the …
![Apple passkey](https://img.helpnetsecurity.com/wp-content/uploads/2022/06/07132936/apple-passkey-400x200.jpg)
Apple unveils passkeys for passwordless authentication to apps and websites
At WWDC 2022, Apple has announced and previewed iOS 16 and iPad OS 16, macOS 13 (aka macOS Ventura), watchOS 9, their new M2 chips, new MacBook Air and Pro, as well as new …
![Microsoft](https://img.helpnetsecurity.com/wp-content/uploads/2022/06/03180720/microsoft-broken-400x200.jpg)
Attackers are leveraging Follina. What can you do?
As the world is waiting for Microsoft to push out a patch for CVE-2022-30190, aka “Follina”, attackers around the world are exploiting the vulnerability in a …
![atlassian confluence](https://img.helpnetsecurity.com/wp-content/uploads/2022/06/03160359/atlassian_confluence2-400x200.jpg)
Unpatched Atlassian Confluence zero-day exploited, fix expected today (CVE-2022-26134)
A critical zero-day vulnerability (CVE-2022-26134) in Atlassian Confluence Data Center and Server is under active exploitation, the software maker has warned on Thursday. …
![Microsoft Office](https://img.helpnetsecurity.com/wp-content/uploads/2022/06/02115800/office-400x200.jpg)
Microsoft Office apps are vulnerable to IDN homograph attacks
Microsoft Office apps – including Outlook – are vulnerable to homograph attacks based on internationalized domain names (IDNs). In practice, this means that users …
![FluBot](https://img.helpnetsecurity.com/wp-content/uploads/2022/06/01133217/flubot_spyware-400x200.jpg)
FluBot takedown: Law enforcement takes control of Android spyware’s infrastructure
An international law enforcement operation involving 11 countries has disrupted the spreading of the FluBot Android malware, which spreads via SMS and MMS and steals sensitive …
![Microsoft support](https://img.helpnetsecurity.com/wp-content/uploads/2022/05/31094352/microsoft-support-400x200.jpg)
Zero-day bug exploited by attackers via macro-less Office documents (CVE-2022-30190)
A newly numbered Windows zero-day vulnerability (CVE-2022-30190) is being exploited in the wild via specially crafted Office documents (without macros), security researchers …
![GM Zola](https://img.helpnetsecurity.com/wp-content/uploads/2022/05/26131336/gm-zola-400x200.jpg)
GM, Zola customer accounts compromised through credential stuffing
Customers of automaker General Motors (GM) and wedding planning company Zola have had customer accounts compromised through credential stuffing, and the criminals have used …
![Verizon DBIR](https://img.helpnetsecurity.com/wp-content/uploads/2022/05/25113644/verizon-dbir-hns-400x200.jpg)
Verizon 2022 DBIR: External attacks and ransomware reign
There has been an alarming rise (13%) in ransomware breaches – a jump greater than the past 5 years combined, Verizon Business has revealed in its 2022 Data Breach …
![account](https://img.helpnetsecurity.com/wp-content/uploads/2020/05/21085008/account-hand-400x200.jpg)
Account pre-hijacking attacks possible on many online services
Online accounts getting hijacked and misused is an everyday occurrence, but did you know that account pre-hijacking attacks are also possible? Inspired by previous research on …
![RansomHouse](https://img.helpnetsecurity.com/wp-content/uploads/2022/05/24124528/ransomhouse-400x200.jpg)
RansomHouse: Bug bounty hunters gone rogue?
A new cybercrime outfit that calls itself RansomHouse is attempting to carve out a niche of the cyber extortion market for itself by hitting organizations, stealing their …
![Netgear BR200](https://img.helpnetsecurity.com/wp-content/uploads/2022/05/20132424/netgear-br200-1600-400x200.jpg)
Two business-grade Netgear VPN routers have security vulnerabilities that can’t be fixed
Netgear has admitted that multiple security vulnerabilities in its business-grade BR200 and BR500 VPN routers can’t be fixed due to technical limitations outside of …
Featured news
Sponsored
Don't miss
- Void Banshee APT exploited “lingering Windows relic” in zero-day attacks
- SYS01 info-stealer pushed via Facebook ads, LinkedIn and YouTube posts
- ChatGPTriage: How can CISOs see and control employees’ AI use?
- Managing exam pressure: Tips for certification preparation
- Firmware update hides Bluetooth fingerprints