About the security content of macOS Sequoia 15.2 – Apple Support

December 11, 2024 at 01:33PM Multiple security vulnerabilities have been identified in macOS Sequoia 15.2. Issues range from unauthorized access to user data, memory handling problems, and permissions misconfigurations. Updates have been made to address these vulnerabilities, enhancing overall system security. The release date for the update is set for December 11, 2024. ### Meeting … Read more

WhatsApp finally fixes View Once flaw that allowed theft of supposedly vanishing pics

December 10, 2024 at 02:37AM WhatsApp has resolved a vulnerability in its View Once feature, which allows disappearing media to be accessed through web clients and browser extensions. Following reports from Zengo, WhatsApp issued a software update to enhance privacy protections, though further improvements were noted as necessary. Users are encouraged to trust their recipients … Read more

CrowdStrike still doesn’t know how much its Falcon flame-out will cost

November 27, 2024 at 02:30AM CrowdStrike reports $1.01 billion in Q3 revenue, a 29% increase, but faces a $17 million loss and uncertain impacts from a July software crash. CFO warns of delayed customer renewals, despite offering incentives. CEO remains optimistic about product demand, though investors reacted negatively, dropping shares in after-hours trading. ### Meeting … Read more

About the security content of iOS 18.1.1 and iPadOS 18.1.1 – Apple Support

November 19, 2024 at 01:54PM Apple released updates on November 19, 2024, addressing CVE-2024-44308 and CVE-2024-44309, which involved vulnerabilities that could lead to arbitrary code execution and cross-site scripting attacks, respectively. The issues were reported to have been actively exploited on Intel-based Macs and affect iOS and iPadOS 18.1.1 devices. ### Meeting Takeaways **Release Information:** … Read more

Synology hurries out patches for zero-days exploited at Pwn2Own

November 1, 2024 at 12:40PM Synology quickly addressed two critical zero-click vulnerabilities found in its Synology Photos and BeePhotos software during the Pwn2Own 2024 competition. Users are urged to update their systems to prevent remote code execution attacks. Similar vulnerabilities were also patched by QNAP, highlighting ongoing security risks for exposed NAS devices. **Meeting Takeaways:** … Read more

Windows 11 Task Manager bug shows wrong number of running processes

October 31, 2024 at 04:10PM Microsoft is addressing a reporting issue in Windows 11, where Task Manager displays zero running apps and processes after the KB5044384 preview update. Although the app remains functional, this issue is linked to the “Group by Type” view. A fix is underway for a future update. ### Meeting Notes Takeaways … Read more

qBittorrent fixes flaw exposing users to MitM attacks for 14 years

October 31, 2024 at 11:14AM qBittorrent fixed a long-standing remote code execution vulnerability related to SSL/TLS certificate validation in its DownloadManager. This flaw, present since 2010, allowed potential man-in-the-middle attacks. The issue was resolved in version 5.0.1, released on October 28, 2024, but users were not adequately informed. Immediate upgrade is recommended. ### Meeting Takeaways: … Read more

LottieFiles hit in npm supply chain attack targeting users’ crypto

October 31, 2024 at 05:05AM LottieFiles reported malicious code in npm package versions 2.0.5, 2.0.6, and 2.0.7, prompting users to connect cryptocurrency wallets. They released version 2.0.8 to remedy the issue, advising users to upgrade. The malicious activity affected no other services or repositories, while investigations continue into the breach’s impact. ### Meeting Takeaways: 1. … Read more

About the security content of macOS Sequoia 15.1 – Apple Support

October 28, 2024 at 12:00PM Multiple vulnerabilities affecting macOS Sequoia 15.1 have been identified and addressed, including issues related to sandbox bypasses, logic flaws, and path deletions. Improvements in data redaction and validation were implemented to mitigate risks. Updates are available to enhance system security against potential exploitation. Release date is October 28, 2024. ### … Read more

Windows 11 KB5044380 preview update lets you remap the Copilot key

October 23, 2024 at 03:44PM Microsoft has released the KB5044380 Preview cumulative update for Windows 11 23H2 and 22H2, introducing seventeen changes, including a new Gamepad keyboard and remapping the Copilot key. Users can manually install it via Windows Update or the Microsoft Update Catalog. The update aims to enhance functionality without security fixes. ### … Read more