About the security content of iOS 18.1 and iPadOS 18.1 – Apple Support

October 28, 2024 at 12:06PM Apple will release iOS 18.1 on October 28, 2024, addressing multiple vulnerabilities affecting devices such as iPhone XS and later. Key issues include improved authentication for physical access vulnerabilities, better handling of symlinks, and enhanced input validation to prevent memory corruption and unauthorized access to sensitive data. ### Meeting Takeaways … Read more

About the security content of visionOS 2.1 – Apple Support

October 28, 2024 at 12:06PM Apple has released updates for visionOS 2.1 on Apple Vision Pro addressing various security vulnerabilities. These include improved handling of symlinks, memory management, and path handling issues that could lead to unauthorized access, information disclosure, or system crashes. The update is available as of October 28, 2024. ### Meeting Takeaways … Read more

About the security content of macOS Ventura 13.7.1 – Apple Support

October 28, 2024 at 12:06PM On October 28, 2024, an update for macOS Ventura 13.7.1 was released addressing multiple security vulnerabilities (CVE-2024-44255, CVE-2024-44270, etc.). Improvements included better validation and checks to prevent unauthorized access, data leaks, memory corruption, and file system modifications, enhancing overall system security for users. **Meeting Takeaways: Security Updates for macOS Ventura … Read more

About the security content of macOS Sonoma 14.7.1 – Apple Support

October 28, 2024 at 12:06PM Apple has released security updates for macOS Sonoma 14.7.1, addressing numerous vulnerabilities including logic issues, sandbox circumvention, and information disclosure risks. Updates enhance validation, improve checks, and implement additional restrictions to safeguard against potential malware and unauthorized access to sensitive data. Users are encouraged to install the update promptly. ### … Read more

About the security content of macOS Sequoia 15.1 – Apple Support

October 28, 2024 at 12:00PM Multiple vulnerabilities affecting macOS Sequoia 15.1 have been identified and addressed, including issues related to sandbox bypasses, logic flaws, and path deletions. Improvements in data redaction and validation were implemented to mitigate risks. Updates are available to enhance system security against potential exploitation. Release date is October 28, 2024. ### … Read more

Brazen crims selling stolen credit cards on Meta’s Threads

October 28, 2024 at 11:55AM Criminals are openly selling stolen financial information, including credit card details, on Meta’s Threads. Security experts highlight inadequate moderation, with some accounts remaining active for months. This trend coincides with Telegram’s crackdown on illicit activity, leading criminals to shift their operations to Threads while still using Telegram for sales. ### … Read more

Redline, Meta infostealer malware operations seized by police

October 28, 2024 at 09:35AM The Dutch National Police, in collaboration with the FBI and international partners, launched “Operation Magnus,” disrupting Redline and Meta infostealer malware operations. They seized crucial infrastructure and obtained evidence, warning cybercriminals that legal actions are underway. Additional details and potential arrests are expected to be announced soon. ### Meeting Takeaways … Read more

THN Cybersecurity Recap: Top Threats, Tools and News (Oct 21 – Oct 27)

October 28, 2024 at 08:33AM Cybersecurity news reveals new threats including a critical Fortinet flaw under exploitation, severe cryptographic issues in cloud services, and North Korean Lazarus Group exploiting a Chrome vulnerability. Notably, Delta Air Lines sued CrowdStrike for a major outage, while CISA investigates unauthorized telecom access by Chinese threat actors. Stay informed and … Read more

Cybercriminals Use Webflow to Deceive Users into Sharing Sensitive Login Credentials

October 28, 2024 at 07:26AM Cybersecurity researchers warn of a rise in phishing attacks utilizing Webflow, targeting sensitive crypto wallet information and webmail credentials. Over 120 organizations, primarily in North America and Asia, are affected. Attackers exploit legitimate services to create deceptive phishing pages, increasing their success in stealing user credentials. ### Meeting Takeaways 1. … Read more

AP Sources: Chinese Hackers Targeted Phones of Trump, Vance, People Associated With Harris Campaign

October 28, 2024 at 07:17AM Chinese hackers conducted an espionage operation targeting the cellphones of Donald Trump, JD Vance, and individuals associated with Kamala Harris’s campaign, highlighting concerns over cybersecurity and political privacy. **Meeting Takeaways:** 1. **Main Event:** Chinese hackers are involved in an extensive espionage operation. 2. **Targets:** – High-profile individuals targeted include: – … Read more