Dell fixes privilege elevation bug in support software

Credit to Author: Danny Bradbury| Date: Thu, 13 Feb 2020 13:43:39 +0000

Users of Dell SupportAssist should patch their software immediately to fix a software bug that could lead to arbitrary code execution.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/qWZIGKgr3WU” height=”1″ width=”1″ alt=””/>

Read more

IE zero day and heap of RDP flaws fixed in February Patch Tuesday

Credit to Author: John E Dunn| Date: Thu, 13 Feb 2020 12:52:59 +0000

Microsoft has finally patched the Internet Explorer (IE) zero-day flaw the company said in January was being used in “limited targeted attacks”.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/JI_KRna6j1I” height=”1″ width=”1″ alt=””/>

Read more

FBI: Cybercrime tore a $3.5b hole in victims’ pockets last year

Credit to Author: Lisa Vaas| Date: Thu, 13 Feb 2020 12:45:23 +0000

The FBI’s Internet Crime Report shows that business email comprise is the biggest money-maker for cybercriminals.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/z_YNbnD3_LU” height=”1″ width=”1″ alt=””/>

Read more

A large – but manageable – February Patch Tuesday brings critical browser updates

Credit to Author: Greg Lambert| Date: Thu, 13 Feb 2020 03:00:00 -0800

With 99 reported vulnerabilities and patches to both Microsoft browsers, Office and Windows, this month’s Patch Tuesday update is not as large an administrative burden as you might initially think. We’ve rated the browser updates as a “Patch Now” update due to issues with the Chakra engine, but both Office and Windows can be scheduled according to a regular patch cadence. Unfortunately, we have another Adobe Flash update to deploy, but no critical development updates for February.

You can find more information in our helpful infographic here.

To read this article in full, please click here

Read more

A Deep Dive Into Wakeup On Lan (WoL) Implementation of Ryuk

Credit to Author: Goutam Tripathy| Date: Thu, 13 Feb 2020 09:57:14 +0000

Quick Heal Security Labs recently came across a variant of Ryuk Ransomware which contains an additional feature of identifying and encrypting systems in a Local Area Network (LAN). This sample targets the systems which are present in sleep as well as the online state in the LAN. This sample is packed with…

Read more

BlackBerry says its new Digital Workplace eliminates need for VPN, VDI

Credit to Author: Lucas Mearian| Date: Wed, 12 Feb 2020 13:18:00 -0800

BlackBerry has unveiled its Digital Workplace platform, a web portal and workspace for secure online and offline access to corporate on-premise or cloud content,  including Microsoft Office 365 resources.

Digital Workplace, announced last week, integrates a secure browser-based workspace sold by Awingu, a Belgium company that penned a partnership with BlackBerry in 2018. Businesses can access their legacy Windows, Linux, SaaS or internal web apps, desktops and files inside of Awingu’s secure managed browser. Awingu’s unified workspace runs Windows, Linux, web and intranet apps.

To read this article in full, please click here

Read more