Hyundai and Kia to patch a flaw that allows the theft of the cars with a USB cable

Hyundai and Kia car makers are releasing an emergency software update to fix a flaw that can allow stealing a car with a USB cable. Carmakers Hyundai and KIA are rolling out an emergency update for the software shipped with several car models. The update addresses a bug that can be exploited by thieves to […]

The post Hyundai and Kia to patch a flaw that allows the theft of the cars with a USB cable appeared first on Security Affairs.

February 16, 2023
Read More >>

City of Oakland issued a local state of emergency after recent ransomware attack

The City of Oakland has declared a local state of emergency due to the effect of the ransomware attack that hit the city on February 8, 2023. The City of Oakland disclosed last week a ransomware attack, the security breach began on February 8, 2023. In an abundance of caution, the City of Oakland has […]

The post City of Oakland issued a local state of emergency after recent ransomware attack appeared first on Security Affairs.

February 15, 2023
Read More >>

Adobe addressed critical bugs in Illustrator, After Effects Software

Adobe Patch Tuesday addressed at least a half dozen vulnerabilities, including critical issues that expose Windows and macOS to hack. Adobe released security updates to address at least a half dozen vulnerabilities impacting Photoshop, Illustrator and After Effects for both Windows and macOS users. Adobe addressed four critical issues (CVE-2022-24094, CVE-2022-24095, CVE-2022-24096, and CVE-2022-24097) affecting […]

The post Adobe addressed critical bugs in Illustrator, After Effects Software appeared first on Security Affairs.

February 15, 2023
Read More >>

Beep, a new highly evasive malware appeared in the threat landscape

Experts detected a new evasive malware dubbed Beep, it implements many anti-debugging and anti-sandbox techniques. Researchers from Minerva recently discovered a new evasive malware dubbed Beep, which implements many anti-debugging and anti-sandbox techniques. The name Beep comes from the use of techniques involved in delaying the execution through the use of the Beep API function. The experts […]

The post Beep, a new highly evasive malware appeared in the threat landscape appeared first on Security Affairs.

February 15, 2023
Read More >>

Community Health Systems data breach caused by GoAnywhere MFT hack

Community Health Systems (CHS) disclosed a data breach, attackers exploited the zero-day vulnerability in Fortra’s GoAnywhere MFT platform. Community Health Systems (CHS) is one of the nation’s leading healthcare providers. CHS operates 79 acute-care hospitals and more than 1,000 other sites of care, including physician practices, urgent care centers, freestanding emergency departments, occupational medicine clinics, […]

The post Community Health Systems data breach caused by GoAnywhere MFT hack appeared first on Security Affairs.

February 15, 2023
Read More >>

AdSense fraud campaign relies on 10,890 sites that were infected since September 2022

The threat actors behind a massive AdSense fraud campaign infected 10,890 WordPress sites since September 2022. In November 2022, researchers from security firm Sucuri reported to have tracked a surge in WordPress malware redirecting website visitors to fake Q&A sites via ois[.]is. The experts were tracking the campaign since September 2022, the campaign’s end goal was black […]

The post AdSense fraud campaign relies on 10,890 sites that were infected since September 2022 appeared first on Security Affairs.

February 15, 2023
Read More >>

Microsoft Patch Tuesday for February 2023 fixed actively exploited zero-days

Microsoft Patch Tuesday security updates for February 2023 addressed 75 flaws, including three actively exploited zero-day bugs. Microsoft Patch Tuesday security updates for February 2023 fixed 75 vulnerabilities in multiple products, including Microsoft Windows and Windows Components; Office and Office Components; Exchange Server; .NET Core and Visual Studio Code; 3D Builder and Print 3D; Microsoft […]

The post Microsoft Patch Tuesday for February 2023 fixed actively exploited zero-days appeared first on Security Affairs.

February 14, 2023
Read More >>

Experts discover over 451 clipper malware-laced packages in the PyPI repository

Threat actors published more than 451 unique malware-laced Python packages on the official Python Package Index (PyPI) repository. Phylum researchers spotted more than 451 unique Python packages on the official Python Package Index (PyPI) repository in an attempt to deliver clipper malware on the developer systems. According to the experts, the activity is still ongoing […]

The post Experts discover over 451 clipper malware-laced packages in the PyPI repository appeared first on Security Affairs.

February 14, 2023
Read More >>

The Tor network hit by wave of DDoS attacks for at least 7 months

Tor Project maintainers revealed that for at least 7 months, the Tor network was hit by several different waves of ongoing DDoS attacks. During the last months Tor users have experienced Tor network performance issues lately, Tor Project maintainers explained that they were caused by different waves of ongoing DDoS attacks. Tor Project’s Executive Director […]

The post The Tor network hit by wave of DDoS attacks for at least 7 months appeared first on Security Affairs.

February 14, 2023
Read More >>

Apple fixes the first zero-day in iPhones and Macs this year

Apple has released emergency security updates to fix a new actively exploited zero-day vulnerability that impacts iPhones, iPads, and Macs. Apple has released emergency security updates to address a new actively exploited zero-day vulnerability, tracked as CVE-2023-23529, that impacts iOS, iPadOS, and macOS. The flaw is a type confusion issue in WebKit that was addressed […]

The post Apple fixes the first zero-day in iPhones and Macs this year appeared first on Security Affairs.

February 14, 2023
Read More >>