Month: September 2024

Sep 17, 2024Ravie LakshmananSoftware Security / Data Protection SolarWinds has released fixes to address two security flaws in its Access Rights Manager (ARM) software, including a critical vulnerability that could result in remote code execution. The vulnerability, tracked as CVE-2024-28991, is rated 9.0 out of a maximum of 10.0 on the CVSS scoring system. It
0 Comments
The Asus ROG Ally laid down the gauntlet for Windows-based gaming handhelds when it arrived in 2023. While it had its flaws, including an SD card reader that was unpardonably prone to malfunction, the Ally established itself as the device to beat in the category despite subsequent competition from Lenovo and MSI. Earlier this year,
0 Comments
The best of American television was celebrated at the 76th Primetime Emmy Awards ceremony on Sunday evening at the Peacock Theater in Los Angeles. Awards were handed out to the most loved shows and artists across categories in acting, writing, direction and others. The ceremony was dominated by FX’s period drama Shōgun, where an English
0 Comments
Sep 16, 2024Ravie LakshmananCloud Security / Vulnerability A now-patched critical security flaw impacting Google Cloud Platform (GCP) Composer could have been exploited to achieve remote code execution on cloud servers by means of a supply chain attack technique called dependency confusion. The vulnerability has been codenamed CloudImposer by Tenable Research. “The vulnerability could have allowed
0 Comments
Tesla Semi Courtesy: Tesla A single-vehicle collision last month involving a Tesla Semi electric truck took 50,000 gallons of water to extinguish and required aircraft to dump fire retardant overhead, according to a preliminary report on Friday from the National Transportation Safety Board. The crash, which occurred on California’s Interstate 80 west of Lake Tahoe,
0 Comments
An Indian antitrust investigation has found US e-commerce giant Amazon and Walmart’s Flipkart violated local competition laws by giving preference to select sellers on their shopping websites, according to reports seen by Reuters. The Competition Commission of India (CCI) in 2020 ordered an investigation into Amazon and Flipkart for allegedly promoting certain sellers with which
0 Comments
Sep 13, 2024Ravie LakshmananSoftware Security / Threat Intelligence Malicious actors are likely leveraging publicly available proof-of-concept (PoC) exploits for recently disclosed security flaws in Progress Software WhatsUp Gold to conduct opportunistic attacks. The activity is said to have commenced on August 30, 2024, a mere five hours after a PoC was released for CVE-2024-6670 (CVSS
0 Comments
Andy Ginther, mayor of Columbus, Ohio, pictured at a White House event in 2023, was not giving the public the full picture after a recent ransomware attack, according to a dark web researcher who investigated, and has since been sued by the city. Bloomberg | Bloomberg | Getty Images Ransomware has long been plaguing American
0 Comments
Sep 13, 2024Ravie LakshmananFinancial Fraud / Mobile Security Cybersecurity researchers have uncovered a new variant of an Android banking trojan called TrickMo that comes packed with new capabilities to evade analysis and display fake login screens to capture victims’ banking credentials. “The mechanisms include using malformed ZIP files in combination with JSONPacker,” Cleafy security researchers
0 Comments