24 Critical Security Vulnerabilities Found in ZKTeco Hybrid Biometric Terminals
Security experts and researchers have discovered critical vulnerabilities in ZKTeco hybrid biometric terminals, including physical bypass via fake QR codes, SQL injection attacks, and the potential for threat actors to remotely manipulate devices and steal biometric data.
View full story…
Latest Cybernews
Significant Data Theft Incident Affects 165 Snowflake Customers Globally
Mandiant assists Snowflake in responding to data theft incident by financially motivated threat actor UNC5537, targeting compromised login credentials and lack of multifactor authentication.
View full story…
Two Arrests Made in UK for SMS Phishing Scam Using Homemade Mobile Antenna
Two individuals arrested in Manchester and London for using homemade mobile antenna to send fraudulent SMS messages posing as banks and official organizations to steal personal information.
View full story…
Microsoft’s June 2024 Patch Tuesday Addresses 51 Vulnerabilities, Including Critical Flaws
Microsoft’s June 2024 Patch Tuesday security update fixed 51 vulnerabilities, including critical remote code execution flaws in various Microsoft services and applications.
View full story…
Genetic Testing Company 23andMe Under Investigation for Data Breach
UK’s Information Commissioner’s Office and Canada’s Privacy Commissioner probe 23andMe for unauthorized access to 12 million customers’ sensitive data.
View full story…
Arm and NVIDIA Disclose New Vulnerabilities in Products, Urging Customers to Update for Security
Arm and NVIDIA have identified zero-day vulnerabilities in their products, including a serious out-of-bounds write error in NVIDIA’s GPU Display Driver, prompting customers to patch their systems promptly to prevent unauthorized access and data breaches.
View full story…
Latest Cybernews
WeLiveSecurity Wins Best Cybersecurity Vendor Blog at European Cybersecurity Blogger Awards
WeLiveSecurity was honored with the title of Best Cybersecurity Vendor Blog at the European Cybersecurity Blogger Awards, showcasing excellence within the industry and supporting a charitable cause.
View full story…
Major London Hospitals Face Challenges Following Cyber Attack by Russian Gang Qilin
A cyber attack by the Russian cyber gang Qilin has disrupted pathology services at major London hospitals, leading to the cancellation of operations and a shortage of blood donations, particularly O blood types.
View full story…
Microsoft Enhances Recall AI Feature in Windows 11 for Copilot+ PCs with New Security Measures
Microsoft has updated the Recall AI feature in Windows 11 for Copilot+ PCs with optional Recall, Windows Hello authentication, and data encryption to address security concerns and improve user privacy.
View full story…
IoT Vulnerabilities Surge by 136% in 2024
Ransomware attacks on vulnerable IoT devices, especially in critical sectors like healthcare, can lead to delays in patient treatment.
View full story…
New York Times Data Breach Exposes 273GB of Source Code Repositories
Security researchers discover breach where attacker exploited exposed GitHub token to steal internal communications, user keys, and software development details.
View full story…
Latest Cybernews
Prompt Injection Vulnerability Discovered in EmailGPT Service
A critical prompt injection vulnerability, identified as CVE-2024-5184, has been disclosed in EmailGPT, an AI email assistant service that utilizes OpenAI’s GPT models, potentially leading to data exposure, financial loss, and denial-of-service attacks.
View full story…