Windows Hello bypassed with laptop fingerprint sensor bugs
Microsoft, Dell, and Lenovo laptops had faulty implementations of the Secure Device Connection Protocol in their fingerprint sensors, which enabled Windows Hello authentication bypass and potential app access and data exfiltration activities...
Exposed Kubernetes secrets pose significant supply chain threat Numerous organizations and open-source projects could be impacted by a supply chain attack stemming from publicly exposed Kubernetes secrets enabling access to sensitive Software...
BleepingComputer reports that widely used 3D computer graphics software suite Blender has been impacted by site outages due to distributed denial-of-service attacks that have been ongoing since the weekend.
Macs targeted by Atomic Stealer through fraudulent browser updates
Threat actors have been targeting macOS devices with the Atomic Stealer information-stealing malware, also known as AMOS, through fraudulent web browser updates as part of the new "ClearFake" campaign, The Hacker News reports.
Almost 8.5 million individuals across the U.S. had their personal data compromised after Denver-based patient engagement firm Welltok had its MOVEit file transfer system subjected to a widespread hack by the Cl0p ransomware operation...
Novel Mirai-based DDoS botnet exploits 0-days to infect routers and security cameras
The newly discovered InfectedSlurs botnet is being built through the exploitation of two zero-day RCE vulnerabilities in routers and network video recorder devices.