Security news that informs and inspires

2376 articles by

Decipher Podcast: Crane Hassold

In a podcast discussion with Lindsey O'Donnell-Welch, Crane Hassold with Abnormal Security discusses how business email compromise attackers are getting savvier and best practices to defend against BEC attacks.

Podcast, Business Email Compromise

Researchers Find Log4Shell Type Flaw in H2 Database Console

Researchers have found a Log4Shell-like flaw in the H2 database console, which allows remote code execution.

Log4j

Attacks Target Log4j Bug in VMware Horizon

An unknown threat group is exploiting the Log4j vulnerability in VMware Horizon servers to install webshells for further malicious activity.

Log4j, Vmware

CISA: Federal Agencies Taking Steps to Address Log4j Flaw

CISA said that thousands of internet-connected assets have been mitigated by federal agencies under its Emergency Directive that addressed the Log4j flaw.

CISA, Government Agencies, Log4j

Meta Lawsuit Cracks Down on Facebook Phishing Scams

A new lawsuit from Meta seeks to uncover the operators behind 39,000 phishing sites that have attempted to steal Facebook, Instagram and WhatsApp users' credentials.

Facebook, Phishing