D-Link tells users to trash old VPN routers over bug too dangerous to identify

November 20, 2024 at 09:38AM D-Link advises owners of older VPN routers to replace their devices due to a serious remote code execution vulnerability. The company won’t issue patches for end-of-life products but offers a 20% discount on a new router. Users are encouraged to update passwords and enable Wi-Fi encryption. ### Meeting Takeaways 1. … Read more

Apple fixes two zero-days used in attacks on Intel-based Macs

November 19, 2024 at 04:57PM Apple issued emergency security updates to address two zero-day vulnerabilities that were exploited in attacks on Intel-based Mac systems. The updates aim to enhance security and protect users from potential threats. **Meeting Takeaways:** 1. Apple has released emergency security updates. 2. The updates address two zero-day vulnerabilities. 3. The vulnerabilities … Read more

Microsoft now testing hotpatch on Windows 11 24H2 and Windows 365

November 19, 2024 at 12:40PM Microsoft has announced the preview availability of hotpatching for Windows 365 and Windows 11 Enterprise 24H2 client devices. This feature allows for updates to be applied without requiring a system reboot, enhancing efficiency and performance for users. **Meeting Takeaways:** 1. **Announcement**: Microsoft has announced the preview availability of hotpatching. 2. … Read more

US space tech giant Maxar discloses employee data breach

November 18, 2024 at 04:04PM Maxar Space Systems reported a data breach where hackers accessed personal employee information, including names and Social Security numbers, via a compromised network. Immediate actions were taken once the breach was discovered on October 11, 2024. Identity protection services are offered to affected employees. No bank account information was exposed. … Read more

New Stealthy BabbleLoader Malware Spotted Delivering WhiteSnake and Meduza Stealers

November 18, 2024 at 12:57PM Researchers have identified a new malware loader called BabbleLoader, designed to evade detection and deliver information stealers like WhiteSnake and Meduza. It employs various evasion techniques, including runtime resolution and unique code for each sample, complicating analysis. This loader highlights the growing complexity of malware delivery methods. **Meeting Takeaways – … Read more

Microsoft pulls Exchange security updates over mail delivery issues

November 15, 2024 at 10:23AM Microsoft has temporarily halted the November 2024 Exchange security updates due to email delivery problems on servers employing custom mail flow rules, as identified during this month’s Patch Tuesday. **Meeting Notes Takeaways:** 1. Microsoft has paused the scheduled security updates for Exchange set for November 2024. 2. The pause is … Read more

Microsoft just killed the Windows 10 Beta Channel for good

November 15, 2024 at 09:14AM Microsoft has shut down the Windows 10 Beta Channel just five months after its revival in June, transitioning all enrolled Windows Insiders to the Release Preview Channel. **Meeting Takeaways:** 1. **Windows 10 Beta Channel Shut Down:** Microsoft has officially closed the Windows 10 Beta Channel five months after its revival … Read more

In Other News: TSA Wants New Cyber Rules, Scam Call Detection in Android, SIM Swappers Arrested

November 15, 2024 at 08:15AM The TSA is proposing new cybersecurity regulations for pipelines and railroads. Google has introduced scam call detection features for Android devices, and several SIM swappers have been arrested in the US. **Meeting Takeaways:** 1. **TSA Cyber Regulations**: The Transportation Security Administration (TSA) is proposing new cybersecurity rules specifically aimed at … Read more

Microsoft just killed the Windows 10 Beta Channel again

November 14, 2024 at 06:45PM Microsoft has discontinued the Windows 10 Beta Channel, moving Insiders to the Release Preview Channel, and advising users to prepare for Windows 10’s end of support by transitioning to Windows 11. Users can delay upgrading for one year by paying $30 for Extended Security Updates, which will be available in … Read more

New Glove Stealer malware bypasses Chrome’s cookie encryption

November 14, 2024 at 03:49PM New Glove Stealer malware can infiltrate Google Chrome’s App-Bound encryption, successfully stealing browser cookies. This poses significant security risks, as it can access sensitive information from users’ online activities. **Meeting Takeaways:** 1. **New Malware Alert**: A new information-stealing malware named “Glove Stealer” has been identified. 2. **Bypassing Security Features**: Glove … Read more