Thousands of Oracle NetSuite Sites at Risk of Exposing Customer Information

August 20, 2024 at 01:33AM Cybersecurity researchers warn of vulnerabilities in thousands of Oracle NetSuite e-commerce sites, exposing customer data. A misconfiguration in NetSuite’s SuiteCommerce platform allows attackers to access sensitive information, requiring site administrators to tighten access controls and temporarily take impacted sites offline. Another disclosure details a way to manipulate credential validation in … Read more

Unfixed Microsoft Entra ID Authentication Bypass Threatens Hybrid Clouds

August 15, 2024 at 05:10PM Researchers have discovered a vulnerability in Microsoft Entra ID that can enable attackers to bypass authentication in hybrid identity infrastructures. This involves manipulating the Pass-Through Authentication (PTA) agent, allowing them to log in as any synced AD user without knowing their actual password. Microsoft plans to address the issue, which … Read more

The best Windows 11 features added in 2023

January 8, 2024 at 08:54PM Windows 11’s 2023 update brings back drag and drop for the taskbar, introduces Windows Copilot AI assistant, and modernizes File Explorer. Aiming to address early feedback, Microsoft plans to enhance Copilot in 2024. The 2024 update is expected to focus on AI, with features including upgraded weather updates, printing management, … Read more