Chrome Security Update: Patches Widely Exploited Zero-Day Flaw
Google has upgraded the Stable and Extended stable channels to 116.0.5845.187 for Mac and Linux and 116.0.5845.187/.188 for Windows as part of a security update for Chrome.
This release comes with one "Critical" security patch. The...
0-Click RCE Vulnerability in Samsung Smartphones Let Attackers Trigger OOB Write – Technical Analysis
Google Security researchers have disclosed a critical vulnerability, tagged as CVE-2024-49415, affecting Samsung smartphones last year and reported to Samsung with a 90-day deadline to patch.
This zero-click remote code execution (RCE) flaw originates...
Multiple Counter-Strike Zero-Day Flaw Let Hackers Control Client Machine
Neodyme researchers discovered three distinct RCE vulnerabilities in Counter-Strike: Global Offensive, where each vulnerability is exploited through a malicious Python server upon game client connection.
Despite fixing several critical vulnerabilities with a patch dated 04/28/2021,...
Exploitation Zero-Day Vulnerabilities For Remote Access Became Prime Target
The cybersecurity landscape in 2024 has been marked by a significant surge in malware and vulnerabilities.
The Key trends include the expansion of Ransomware-as-a-Service (RaaS), an increase in software supply chain attacks, and the exploitation...
New Google Chrome Zero-Day Bug Actively Exploited in Wild – Emergency Update!
Google released new security updates for actively exploited Chrome zero-day vulnerability that allows attackers to execute an arbitrary code to take full control of the system remotely using the exploit that exists in the...
Paragon Spyware Exploited WhatsApp Zero-day Vulnerability to Attack High-value Targets
Researchers have uncovered extensive evidence linking Israeli firm Paragon Solutions to a sophisticated spyware operation that exploited a zero-day vulnerability in WhatsApp to target journalists and civil society members.
Following the investigation, WhatsApp notified approximately...
Telegram Zero-Day Vulnerability Exploited Using Malicious Video Files
ESET researchers recently discovered a critical zero-day vulnerability in the Telegram messaging app for Android, potentially exposing millions of users to malicious attacks.
The exploit, dubbed "EvilVideo," allowed attackers to disguise harmful Android payloads as...
iTunes 0-day Privilege Escalation Flaw Let Attackers Hack Windows
iTunes is a media player which is developed by Apple Inc. and this application enables users to purchase, organize, and play digital music and videos.
It was launched in 2001 and revolutionized the way people...
Windows SmartScreen & DirectX Graphics Zero-day Flaw Let Attacker Gain Admin Privilege
Microsoft releases a few patches in December normally, and this year is no exception. Microsoft Patch for December 2022, a total of 52 vulnerabilities in Microsoft Windows and Windows Components, Azure, Office and Office Components,...
Exim SMTP Service Zero-day Flaw Let Attackers Execute Remote Code
Six new zero-day vulnerabilities in Exim Message Transfer Agent have been reported as part of the Zero-Day initiative. These vulnerabilities were discovered in June 2022 but were not disclosed until now as Exim did...