Zoom’s wake-up call, zero-day SonicWall patch, 23andMe’s growing breach bill

Zoom’s account takeover wake-up call Two zero-days, one urgent SonicWall patch 23andMe’s breach bill keeps growing Show Notes: https://cisoseries.com/cybersecurity-news-zooms-wake-up-call-zero-day-sonicwall-patch-23andmes-growing-breach-bill/ Huge thanks to our sponsor, ThreatLocker Every security leader is being asked the same question right now: How do we enable…

Devon Council Approves 5G Gear On Lampposts

Some councillors express concerns around potential long-term health effects of installing 5G transceivers on street furniture near residences This article has been indexed from Silicon UK Read the original article: Devon Council Approves 5G Gear On Lampposts

Kratos PhaaS Targets Microsoft 365 Users With SharePoint Links and Cloudflare Anti-Bot Checks

Kratos, a subscription-based phishing-as-a-service platform, is targeting Microsoft 365 users in the United States, Europe, and other regions through campaigns designed to blend into ordinary document-sharing workflows. The operation abuses trusted services, including Microsoft SharePoint, OneDrive, Microsoft Forms, Canva, Tilda,…

F5 Fixes 3 NGINX Flaws Enabling Potential Remote Code Execution, Memory Disclosure, and DoS Attacks

F5 has issued security advisories for three vulnerabilities affecting NGINX Plus and NGINX Open Source. These flaws could allow unauthenticated attackers to trigger crashes in worker processes, disclose limited memory contents, or potentially execute code under specific conditions. The vulnerabilities,…

Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day

The researcher stripped the proof-of-concept (PoC) exploit to prevent immediate exploitation of the vulnerability. The post Nightmare Eclipse Drops ‘LegacyHive’ Windows Zero-Day  appeared first on SecurityWeek. This article has been indexed from SecurityWeek Read the original article: Nightmare Eclipse Drops…