A tool named TeamsPhisher, developed and released by a U.S. Navy's Red team member, exploits an unaddressed security vulnerability within Microsoft Teams. This tool allows users to bypass restrictions on incoming files from external tenants, which are users outside the organization. By
Latest News
Threads, Meta’s rival to Twitter that was released on July 6th, has sparked privacy concerns around the platform’s business model of tracking web users for advertising. These concerns raise doubts about the app's potential launch in the EU, where Meta's claimed legal basis for processing Facebook
The Uptycs Threat Research team has recently uncovered a formidable malware called Meduza Stealer, which poses a significant threat to Windows users and organizations worldwide. In a recently published report, Uptycs says, "The Meduza Stealer has a singular objective: comprehensive data theft.
A vulnerability identified as CVE-2023-3460 with a CVSS score of 9.8 has been discovered in all versions of the Ultimate Member plugin, including the most recent release (2.6.6), on June 29. This allowed the hackers to exploit a zero-day vulnerability, exposing WordPress websites to potential
A recent analysis by NordVPN has revealed a worrying VPN trend. The study found that around half of VPN users in most countries choose free VPN services, potentially exposing themselves to privacy and security risks. Gen Z is particularly high-risk, with most users of this generation choosing free
The research team at Niebezpiecznik (a Polish security blog) uncovered the hack that stole messages, call logs, and locations intercepted by a widely used phone monitoring app. LetMeSpy published a notice stating that the incident occurred on June 21, and “as a result of the attack, the
The proposed Online Safety Bill in the United Kingdom continues to face growing opposition. Initially drafted in May 2021, the bill aims to combat illegal and harmful content online by granting the government access to end-to-end encryption systems. The measures have attracted widespread criticism
The cyberattacks targeting the popular MOVEit file transfer software have escalated into one of the most significant data breaches in recent years, affecting over 130 organizations and potentially compromising the personal information of millions of individuals. The ongoing campaign, leveraging
According to the New York City Department of Education (NYC DOE), sensitive personal information belonging to approximately 45,000 students was compromised as hackers gained unauthorized access to documents stored on the MOVEit Transfer server. This compromised data includes Social Security
In a significant blow to the cybercriminal underworld, U.S. federal authorities have seized the domain of BreachForums, the notorious hacking site that served as a hub for cybercriminals. The move comes three months after the arrest of Conor Brian Fitzpatrick, the site administrator known as