Microsoft patches record number of security vulnerabilities, citing its use of AI

Microsoft’s monthly release of security fixes, dubbed Patch Tuesday, resolved a record 570 security vulnerabilities across the company’s product line, thanks to discoveries with AI.

US charges Russian ‘bulletproof’ web hosts over cyberattacks that netted $62M from cybercrime victims

The 2024 indictment, now unsealed, accuses three Russians and two web hosts of aiding hackers and profiting from cybercrime.

Google Confirms Yet More Chrome 150 Memory Security Updates

Another week, another slew of Google Chrome memory vulnerabilities. But what’s the difference between use-after-free, heap buffer overflow and uninitialized use flaws?

Russian hackers keep finding their way into critical networks through neglected routers

Russian state-backed hackers are exploiting neglected routers to access critical infrastructure networks, prompting agencies worldwide to urge organizations to replace outdated equipment and tighten basic network security.

Microsoft Warns 2 Zero-Days Already Exploited In Attacks: Update Now

Microsoft addresses 570 security flaws in a record-breaking Patch Tuesday rollout, including two zero-days already being used in attacks. Don’t waste time; update now.

Telegram’s shortlink domain is back online after day-long suspension

Telegram CEO Pavel Durov confirmed an outage in a tweet, saying that shortlinks to the messaging app had “stopped working.”

FBI Issues Warning As Russia’s FSB Center 16 Hackers Target Routers

Russia’s elite Center 16 hackers are attacking routers in the West, the FBI and other international security agencies have warned. Here’s how to stop them.

New Apple Password Stealer Bypassed MacOS Gatekeeper Without Warning

This Apple credential theft attack targeted your macOS login password while bypassing the built-in malware protection. Here’s what you need to know about CrashStealer.

The Pentagon Just Paused Its Cybersecurity Certification Program. Here’s What Everyone Is Missing.

The Pentagon paused CMMC Phase II, but cybersecurity requirements remain. Here’s what the decision really means for defense contractors.

Apple says former employee exploited ‘rare’ bug to download confidential files after leaving for OpenAI

Apple would not comment on the “security breach,” which allegedly allowed a former employee to download sensitive files from Apple’s network long after he departed the company for rival OpenAI.