Remove weekly-update-122
article thumbnail

Weekly Update 122

Troy Hunt

References I'm going to be in Oslo next week (Hack Yourself First workshop and NDC Security conference) Then in London the week after that (Hack Yourself First workshop and NDC conference) And I'll be in Denver for SnowFROC in March (cyber-something keynote ??) That 733M record breach (oh boy, this thing was a mammoth processing job!)

article thumbnail

Google fixed the eighth actively exploited #Chrome #zeroday this year

Security Affairs

Google on Thursday released security updates to address a new zero-day vulnerability, tracked as CVE-2022-4135, impacting the Chrome web browser. Google rolled out an emergency security update for the desktop version of the Chrome web browser to address a new zero-day vulnerability, tracked as CVE-2022-4135, that is actively exploited.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Bug bounty hunter awarded $50,000 for a Microsoft account hijack flaw

Security Affairs

” To determine the limit rate implemented to protect the accounts, the expert sent 1000 code attempts, but only 122 were processed, the remaining resulted in an error (1211 error code) and any other request was blocked. . If you want to receive the weekly Security Affairs Newsletter for free subscribe here.

article thumbnail

Nation-state actors exploit Fortinet FortiOS SSL-VPN and Zoho ManageEngine ServiceDesk Plus, CISA warns

Security Affairs

In December, Fortinet urged its customers to update their installs to address an actively exploited FortiOS SSL-VPN vulnerability, tracked as CVE-2022-42475, that could be exploited by an unauthenticated, remote attacker to execute arbitrary code on devices. reads the advisory. reads the advisory published by the security vendor.

VPN 125
article thumbnail

Adventures in the land of BumbleBee

Fox IT

Considering that BUMBLEBEE is actively being developed on, the operator(s) did not implement a command to update the loader’s binary, resulting the loss of existing infections. 122 79.110.52[.]191 Distribution via OneDrive links. Email thread hijacking with password protected ZIP. 45 103.175.16[.]46 46 104.168.236[.]99

article thumbnail

Siemens fixed tens of flaws in Siemens Digital Industries Software products

Security Affairs

Siemens has released updates for both affected products and recommends to update to the latest versions.” Siemens has released an update for Solid Edge and recommends to update to the latest version.” If you want to receive the weekly Security Affairs Newsletter for free subscribe here.

article thumbnail

Podcast Episode 129: Repair Eye on the CES Guy and Sensor Insecurity

The Security Ledger

Spotlight: as Attacks Mount, how to secure the Industrial Internet Podcast Episode 122: will 5G increase Internet of Things Risk? See also: Updated: A New Lobbying Group is fighting Right to Repair Laws. Read the whole entry. » » Related Stories Podcast Episode 128: CES is cool but is it secure?