Menu

Category Archives: All

Everything

* bsc#1065729 * bsc#1180814 * bsc#1183682 * bsc#1190336 * bsc#1190768

* bsc#1228714 * bsc#1232818 * bsc#1235218 * bsc#1238788 * bsc#1238790

* bsc#1228714 * bsc#1235218 Cross-References: * CVE-2024-41090

Official abuse of state security has always been bad, now it’s horrifying
DeepSeek’s open source movement
7 reasons low-code and no-code tools fail to deliver
How pet projects fuel innovation and careers in tech
CIO and digi VP to depart UK retail giant Asda as Walmart divorce woes settle
Medusa ransomware gang claims to have hacked NASCAR
Old Fortinet flaws under attack with new method its patch didn’t prevent
China reportedly admitted directing cyberattacks on US infrastructure
Hacktivism resurges – but don’t be fooled, it’s often state-backed goons in masks

Multiple security issues were discovered in MediaWiki, a website engine for collaborative work, which could result in information disclosure, cross-site scripting or restriction bypass.

Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation

Update to 6.0.39 (CVE-2024-45700, CVE-2024-36469, CVE-2024-42325, CVE-2024-45699)

Update to 135.0.7049.84 * CVE-2025-3066: Use after free in Site Isolation

https://security-tracker.debian.org/tracker/DSA-5901-1

https://security-tracker.debian.org/tracker/DSA-5902-1

Multiple vulnerabilities were found in wpa, a set of tools including the widely-used wpasupplicant client for authenticating with WPA and WPA2 wireless networks.

.NET 10 Preview 3 bolsters standard library, C#, WebAssembly
LLMs can’t stop making up software dependencies and sabotaging everything

A floating-point exception in the PSStack::roll function of Poppler before 25.04.0 can cause an application to crash when handling malformed inputs associated with INT_MIN. (CVE-2025-32364) Poppler before 25.04.0 allows crafted input files to trigger out-of-bounds reads in the JBIG2Bitmap::combine function in

ReadJXLImage in JXL in GraphicsMagick before 1.3.46 lacks image dimension resource limits. (CVE-2025-27795) References: – https://bugs.mageia.org/show_bug.cgi?id=34163

https://security-tracker.debian.org/tracker/DSA-5900-1

Microsoft total recalls Recall totally to Copilot+ PCs

https://security-tracker.debian.org/tracker/DSA-5899-1

Update to 1.34.5. Fixes CVE-2025-31498.

Limit the data stored in session state. Remove the empty area below the title bar in Web Inspector when not docked. Fix various crashes and rendering issues

Update to 135.0.7049.52 High CVE-2025-3066: Use after free in Navigations Medium CVE-2025-3067: Inappropriate implementation in Custom Tabs Medium CVE-2025-3068: Inappropriate implementation in Intents Medium CVE-2025-3069: Inappropriate implementation in Extensions

Update to 7.2.5 (CVE-2024-36469, CVE-2024-42325, CVE-2024-45700)

* bsc#1073014 Cross-References: * CVE-2017-17521

* bsc#1239618 * jsc#PED-12500 * jsc#SLE-21253 Cross-References:

Ransomware reaches a record high, but payouts are dwindling
Ransomware crims hammering UK more than ever as British techies complain the board just doesn’t get it

For most of us, tax season is all about finding documents, filling out forms, and crossing your fingers you’re getting a refund. But while you’re busy trying to get your returns filed on time, tax scammers and identity thieves are busy trying to steal your precious personal information. During tax season, a vast amount of […]

Update to 2025.04 GA Update to 2025.04 RC5

Update to 128.9.0 https://www.thunderbird.net/en-US/thunderbird/128.9.0esr/releasenotes/ https://www.mozilla.org/en-US/security/advisories/mfsa2025-24/

Ex-Meta exec tells Senate Zuck dangled US citizen data in bid to enter China

https://security-tracker.debian.org/tracker/DSA-5898-1

Google adds natural language query capabilities to AlloyDB
Google Cloud introduces cloud app design center
Google adds open source framework for building agents to Vertex AI
Google’s Agent2Agent open protocol aims to connect disparate agents
What is Kubernetes? Scalable cloud-native applications
Four paradoxes of software development
Five things to consider before you deploy an LLM
What misleading Meta Llama 4 benchmark scores show enterprise leaders about evaluating AI performance claims
GitHub Copilot rolls out agent mode in Visual Studio Code
US sensor giant Sensata admits ransomware derailed ops
1 billion reasons to protect your identity online

Corporate data breaches are a gateway to identity fraud, but they’re not the only one. Here’s a lowdown on how your personal data could be stolen – and how to make sure it isn’t.

So your friend has been hacked: Could you be next?

When a ruse puts on a familiar face, your guard might drop, making you an easy mark. Learn how to tell a friend apart from a foe.

The good, the bad and the unknown of AI: A Q&A with Mária Bieliková

The computer scientist and AI researcher shares her thoughts on the technology’s potential and pitfalls – and what may lie ahead for us

This month in security with Tony Anscombe – March 2025 edition

From an exploited vulnerability in a third-party ChatGPT tool to a bizarre twist on ransomware demands, it’s a wrap on another month filled with impactful cybersecurity news

RansomHub affiliates linked to rival RaaS gangs

ESET researchers also examine the growing threat posed by tools that ransomware affiliates deploy in an attempt to disrupt EDR security solutions

FamousSparrow resurfaces to spy on targets in the US, Latin America

Once thought to be dormant, the China-aligned group has also been observed using the privately-sold ShadowPad backdoor for the first time

Resilience in the face of ransomware: A key to business survival

Your company’s ability to tackle the ransomware threat head-on can ultimately be a competitive advantage

Making it stick: How to get the most out of cybersecurity training

Security awareness training doesn’t have to be a snoozefest – games and stories can help instill ‘sticky’ habits that will kick in when a danger is near

You will always remember this as the day you finally caught FamousSparrow

ESET researchers uncover the toolset used by the FamousSparrow APT group, including two undocumented versions of the group’s signature backdoor, SparrowDoor

Operation FishMedley

ESET researchers detail a global espionage operation by FishMonger, the APT group run by I‑SOON

MirrorFace updates toolset, expands targeting to Europe

The group’s Operation AkaiRyū begins with targeted spearphishing emails that use the upcoming World Expo 2025 in Osaka, Japan, as a lure

AI’s biggest surprises of 2024 | Unlocked 403 cybersecurity podcast (S2E1)

Here’s what’s been hot on the AI scene over the past 12 months, how it’s changing the face of warfare, and how you can fight AI-powered scams

Shifting the sands of RansomHub’s EDRKillShifter

ESET researchers discover new ties between affiliates of RansomHub and of rival gangs Medusa, BianLian, and Play

When IT meets OT: Cybersecurity for the physical world

While relatively rare, real-world incidents impacting operational technology highlight that organizations in critical infrastructure can’t afford to dismiss the OT threat

Don’t let cybercriminals steal your Spotify account

Listen up, this is sure to be music to your ears – a few minutes spent securing your account today can save you a ton of trouble tomorrow

AI-driven deception: A new face of corporate fraud

Malicious use of AI is reshaping the fraud landscape, creating major new risks for businesses

Operation AkaiRyū: MirrorFace invites Europe to Expo 2025 and revives ANEL backdoor

ESET researchers uncovered MirrorFace activity that expanded beyond its usual focus on Japan and targeted a Central European diplomatic institute with the ANEL backdoor

Kids behaving badly online? Here’s what parents can do

By taking time to understand and communicate the impact of undesirable online behavior, you can teach your kids an invaluable set of life lessons for a new digital age

Threat Report H2 2024: Infostealer shakeup, new attack vector for mobile, and Nomani

Big shifts in the infostealer scene, novel attack vector against iOS and Android, and a massive surge in investment scams on social media

Martin Rees: Post-human intelligence – a cosmic perspective | Starmus highlights

Take a moment to think beyond our current capabilities and consider what might come next in the grand story of evolution

Bernhard Schölkopf: Is AI intelligent? | Starmus highlights

With AI’s pattern recognition capabilities well-established, Mr. Schölkopf’s talk shifts the focus to a pressing question: what will be the next great leap for AI?

This month in security with Tony Anscombe – February 2025 edition

Ransomware payments trending down, the cyber-resilience gap facing SMBs, and APT groups embracing generative AI – it’s a wrap on another month filled with impactful security news

HAProxy could be made to crash or run programs if it received specially crafted network traffic.

Google’s BigQuery and Looker get agents to simplify analytics tasks
Google Cloud Next 2025: News and insights
Repair the bridge before it cracks: Understanding vulnerabilities and weaknesses in modern IT
Infosec experts fear China could retaliate against tariffs with a Typhoon attack
Adding smarts to Azure data lakes with Fabric Data Agents
DSPy: An open-source framework for LLM-powered applications
Watch out for these traps lurking in search results

Here’s how to avoid being hit by fraudulent websites that scammers can catapult directly to the top of your search results

Europol: Five pay-per-infect suspects cuffed, some spill secrets to cops

* bsc#1234452 Affected Products: * openSUSE Leap 15.4 * SUSE Linux Enterprise High Performance Computing 15 SP4

The Reg translates the letter in which Oracle kinda-sorta tells customers it was pwned

CVE-2025-27835 ghostscript: Buffer overflow when converting glyphs to unicode (fedora#2355025) CVE-2025-27834 ghostscript: Buffer overflow caused by an oversized Type 4 function in a PDF (fedora#2355023) CVE-2025-27832 ghostscript: NPDL device: Compression buffer overflow

Dino could be made to expose sensitive information over the network.

Trump kills clearances for infosec’s SentinelOne, ex-CISA boss Chris Krebs
Smashing Security podcast #412: Signalgate sucks, and the quandary of quishing
April’s Patch Tuesday leaves unlucky Windows Hello users unable to login
Wyden blocks Trump’s CISA boss nominee, blames cyber agency for ‘actively hiding info’ about telecom insecurity
GitHub Advanced Security now offers security campaigns
Someone compromised US bank watchdog to access sensitive financial files
Sednit Espionage Group Attacking Air-Gapped Networks

The Sednit espionage group, also known as the Sofacy group, APT28 or “Fancy Bear”, has been targeting various institutions for many years. We recently discovered a component the group employed to reach physically isolated computer networks — “air-gapped” networks — and exfiltrate sensitive files from them through removable drives.

Korplug military targeted attacks: Afghanistan & Tajikistan

After taking a look at recent Korplug (PlugX) detections, we identified two larger scale campaigns employing this well-known Remote Access Trojan. This blog gives an overview of the first one

.NET goes open source and cross-platform

Microsoft’s .NET framework, which is used to build millions of websites and online applications, is taking further steps to go completely open-source, Microsoft has announced at the Connect() virtual development event. The company also stated its commitment to eventually ensure the free code runs on Mac OS and Linux too, Wired reports.

IT Pros also guilty of risqué selfies on mobiles

ESET study reveals many IT professionals are guilty of storing indecent material on their mobile phones, which would leave them embarrassed if lost.