Apple's disappearing Rapid Security Response update

Apple on Monday distributed its latest Rapid Security Response update to iPhones, iPads, and Macs, rolling out an important security patch to protect devices against a recently identified attack Apple says is already in active use.

“Apple is aware of a report that this issue may have been actively exploited,” the company said in its security note.

That’s bad, as it means someone somewhere has already been attacked using this vulnerability. The patch repairs a flaw found in WebKit in which processing web content could lead to arbitrary code execution.

To read this article in full, please click here

Read more

4 collaboration security mistakes companies are still making

Before the pandemic, the business world took for granted that the vast majority of knowledge workers would be working in corporate offices most of the time. In the post-pandemic world, however, many employees can work from anywhere, at any time, and on any device with an internet connection.

When COVID-19 work-at-home mandates took effect around the world in early 2020, organizations rushed to adopt online collaboration tools. With capabilities ranging from voice- and videoconferencing to document co-authoring and project tracking, these tools helped teams communicate, work together, and share updates on various projects and initiatives from home or anywhere else.

To read this article in full, please click here

Read more

Hunting for A New Stealthy Universal Rootkit Loader

Credit to Author: Sherif Magdy| Date: Tue, 11 Jul 2023 00:00:00 +0000

In this entry, we discuss the findings of our investigation into a piece of a signed rootkit, whose main binary functions as a universal loader that enables attackers to directly load a second-stage unsigned kernel module.

Read more

MOVEit Transfer fixes three new vulnerabilities

Categories: Exploits and vulnerabilities

Categories: News

Categories: Ransomware

Tags: Progress

Tags: MOVEit

Tags: vulnerabilities

Tags: CVE-2023-36934

Tags: CVE-2023-36932

Tags: CVE-2023-36933

CISA has warned users about three new vulnerabilities in Progress Software’s MOVEit Transfer software.

(Read more…)

The post MOVEit Transfer fixes three new vulnerabilities appeared first on Malwarebytes Labs.

Read more

Malwarebytes Browser Guard introduces three new features

Categories: Personal

Tags: Malwarebytes

Tags: Browser Guard

Tags: Premium

Tags: new features

Malwarebytes Browser Guard introduces three new features: Content control, import & export, and historical detection statistics

(Read more…)

The post Malwarebytes Browser Guard introduces three new features appeared first on Malwarebytes Labs.

Read more

Warning issued over increased activity of TrueBot malware

Categories: News

Categories: Ransomware

Tags: TrueBot

Tags: Cl0p

Tags: Silence Group

Tags: CVE-2022-31199

Tags: Raspberry Robin

Tags: FlawedGrace

Tags: Cobalt Strike

Tags: Teleport

CISA, the FBI, the MS-ISAC, and the CCCS have warned about increased activity of the TrueBot malware in the US and Canada.

(Read more…)

The post Warning issued over increased activity of TrueBot malware appeared first on Malwarebytes Labs.

Read more