US military grounds entire Osprey tiltrotor fleet over safety concerns

December 10, 2024 at 02:12PM The US Navy, Air Force, and Marine Corps have grounded their V-22 Osprey fleet due to safety concerns after a precautionary landing incident. The decision prioritizes crew safety following previous crashes. Despite ongoing reliability issues, the military plans to pursue advanced tiltrotor designs like the Bell V-280 Valor for future … Read more

Adobe Patches Over 160 Vulnerabilities Across 16 Products

December 10, 2024 at 02:05PM Adobe’s December 2024 Patch Tuesday updates addressed over 160 vulnerabilities across 16 products, notably Adobe Experience Manager and Adobe Animate. The patches include medium to critical severity issues, particularly concerning arbitrary code execution. While no known exploits exist, users are urged to apply the updates promptly for security. ### Meeting … Read more

Scottish Parliament TV at Risk From Deepfakes

December 10, 2024 at 01:47PM Deepfakes pose a significant threat to Scottish Parliamentary recordings and live streams, as highlighted by researchers from the University of Edinburgh. They identified vulnerabilities, including hijacked streams and manipulated videos. Currently, the Parliament lacks preventative measures, but proposed solutions include enhanced authentication and a communication support team for targeted members. … Read more

Windows 10 KB5048652 update fixes new motherboard activation bug

December 10, 2024 at 01:46PM Microsoft released the KB5048652 cumulative update for Windows 10 22H2, addressing six issues, notably one that prevented Windows 10 from activating after a motherboard change. **Meeting Takeaways:** 1. **Release Update**: Microsoft has released the KB5048652 cumulative update for Windows 10 version 22H2. 2. **Number of Fixes**: The update includes a … Read more

Microsoft December 2024 Patch Tuesday fixes 1 exploited zero-day, 71 flaws

December 10, 2024 at 01:38PM Several Microsoft vulnerabilities were reported, affecting various components such as Microsoft Defender, Edge, Office, SharePoint, and Windows services. Severity levels range from moderate to critical, with numerous remote code execution and elevation of privilege vulnerabilities listed, posing significant security risks to users and systems. ### Meeting Takeaways: CVE Vulnerabilities Overview … Read more

Windows 11 KB5048667 & KB5048685 cumulative updates released

December 10, 2024 at 01:23PM Microsoft has released cumulative updates KB5048667 and KB5048685 for Windows 11 versions 24H2 and 23H2 to address security vulnerabilities and other issues. **Meeting Takeaways:** 1. **Updates Released**: Microsoft has released cumulative updates for Windows 11, specifically KB5048667 and KB5048685. 2. **Supported Versions**: The updates are applicable to Windows 11 versions … Read more

FTC distributes $72 million in Fortnite refunds from Epic Games

December 10, 2024 at 12:18PM The Federal Trade Commission (FTC) is distributing over $72 million in refunds related to Epic Games’ Fortnite for employing deceptive practices that led players to make unwanted purchases. **Meeting Takeaways:** 1. **FTC Action**: The Federal Trade Commission is taking action against Epic Games. 2. **Refund Distribution**: Over $72 million is … Read more

FTC distributes $72 million in Fortnite refunds from Epic Games

December 10, 2024 at 12:11PM The FTC is distributing over $72 million in refunds to Fortnite players due to Epic Games’ use of misleading practices leading to unwanted purchases. The first refunds average $114 for 629,344 players. Claims can be submitted until January 10, 2025, but caution against scams is advised. ### Meeting Takeaways 1. … Read more

Cleo File Transfer Vulnerability Under Exploitation – Patch Pending, Mitigation Urged

December 10, 2024 at 11:48AM Users of Cleo-managed file transfer software are urged to secure their systems due to exploitation of a remote code execution vulnerability (CVE-2024-50623). Despite patches, the issue persists, affecting products like Cleo Harmony and VLTrader. At least 10 companies have been compromised, with evidence of ransomware involvement. ### Meeting Takeaways – … Read more

US sanctions Chinese firm for hacking firewalls in ransomware attacks

December 10, 2024 at 11:40AM The U.S. Treasury sanctioned Sichuan Silence, a Chinese cybersecurity firm, and an employee for involvement in 2020 Ragnarok ransomware attacks on U.S. critical infrastructure. Guan Tianfeng exploited a zero-day vulnerability, compromising 81,000 firewalls globally, including over 23,000 in the U.S. A $10 million reward has been offered for information. **Meeting … Read more