zerodays

This is not a drill: VMware vuln with 9.8 severity rating is under attack

Enlarge A VMware vulnerability with a severity rating of 9.8 out of 10 is under active exploitation. At least one reliable exploit has gone public, and there have been successful attempts in the wild to compromise servers that run the vulnerable software. The vulnerability, tracked as CVE-2021-21985, resides in the vCenter Server, a tool for …

This is not a drill: VMware vuln with 9.8 severity rating is under attack Read More »

4 vulnerabilities under attack give hackers full control of Android devices

Enlarge Getty Images Unknown hackers have been exploiting four Android vulnerabilities that allow the execution of malicious code that can take complete control of devices, Google warned on Wednesday. All four of the vulnerabilities were disclosed two weeks ago in Google’s Android Security Bulletin for May. Google has released security updates to device manufacturers, who …

4 vulnerabilities under attack give hackers full control of Android devices Read More »

Apple reports 2 iOS 0-days that let hackers compromise fully patched devices

Enlarge / The 2020 iPhone lineup. From left to right: iPhone 12 Pro Max, iPhone 12 Pro, iPhone 12, iPhone SE, and iPhone 12 mini. Samuel Axon A week after Apple issued its biggest iOS and iPadOS update since last September’s release of version 14.0, the company has released a new update to patch two …

Apple reports 2 iOS 0-days that let hackers compromise fully patched devices Read More »

“Expert” hackers used 11 zerodays to infect Windows, iOS, and Android users

Enlarge Getty Images A team of advanced hackers exploited no fewer than 11 zeroday vulnerabilities in a nine-month campaign that used compromised websites to infect fully patched devices running Windows, iOS, and Android, a Google researcher said. Using novel exploitation and obfuscation techniques, a mastery of a wide range of vulnerability types, and a complex …

“Expert” hackers used 11 zerodays to infect Windows, iOS, and Android users Read More »

Chrome users have faced 3 security concerns over the past 24 hours

Chrome Users of Google’s Chrome browser have faced three security concerns over the past 24 hours in the form of a malicious extension with more than 2 million users, a just-fixed zero-day, and new information about how malware can abuse Chrome’s sync feature to bypass firewalls. Let’s discuss them one by one. First up, the …

Chrome users have faced 3 security concerns over the past 24 hours Read More »

Hackers used 4 zero-days to infect Windows and Android devices

Enlarge Getty Images Google researchers have detailed a sophisticated hacking operation that exploited vulnerabilities in Chrome and Windows to install malware on Android and Windows devices. Some of the exploits were zero-days, meaning they targeted vulnerabilities that at the time were unknown to Google, Microsoft, and most outside researchers (both companies have since patched the …

Hackers used 4 zero-days to infect Windows and Android devices Read More »