Recent Security News
-
Simpson Manufacturing shuts down IT systems after cyberattack
October 11, 2023 at 09:59AM Simpson Manufacturing, a leading American building and structural materials producer, disclosed a cybersecurity incident via an SEC filing. The company detected IT problems and application outages caused by a cyberattack, leading them to take impacted systems offline. The disruption in business operations is expected to continue as remediation efforts are…
-
LinkedIn Smart Links attacks return to target Microsoft accounts
October 11, 2023 at 09:59AM Hackers are exploiting LinkedIn Smart Links in phishing attacks to steal Microsoft account credentials. The Smart Links, used for marketing and tracking, appear to come from a trustworthy source and bypass email protections. The recent attacks targeted a range of sectors, including finance, manufacturing, energy, construction, and healthcare. The phishing…
-
From chaos to cadence: Celebrating two decades of Microsoft’s Patch Tuesday
October 11, 2023 at 09:09AM Microsoft introduced Patch Tuesday in October 2003, a monthly release of software fixes on the second Tuesday of each month. The change brought predictability and stability for IT administrators, who previously faced chaotic patching processes. The number of patches has increased significantly over the years, and other vendors have joined…
-
Over 17,000 WordPress Sites Compromised by Balada Injector in September 2023
October 11, 2023 at 08:54AM Over 17,000 WordPress websites were hacked in September 2023, double the number from the previous month. Around 9,000 of these websites were infiltrated using a security flaw in the tagDiv Composer plugin, allowing for cross-site scripting attacks. The Balada Injector malware is responsible for these attacks, which aim to redirect…
-
U.S. Cybersecurity Agency Warns of Actively Exploited Adobe Acrobat Reader Vulnerability
October 11, 2023 at 08:54AM The US Cybersecurity and Infrastructure Security Agency (CISA) has added a high-severity flaw in Adobe Acrobat Reader to its Known Exploited Vulnerabilities catalog. The vulnerability, tracked as CVE-2023-21608, is a use-after-free bug that allows for remote code execution. Adobe released a patch for the flaw in January 2023, but details…