Information Security News Blog
Patients of Integris Health in Oklahoma are receiving extortionate emails, claiming their data has been stolen due to a cyberattack on the healthcare network, with threats to sell the data to other cybercriminals unless...
Apache OFBiz offers a comprehensive suite of tools for ERP, CRM, E-Commerce, and more. Hailed for its open-source nature and part of the esteemed Apache Software Foundation, OFBiz has been a top choice for...
A new zero-day vulnerability in Barracuda Networks’ Email Security Gateway (ESG) has been disclosed. The vulnerability, identified as CVE-2023-7102, stems from the open-source third-party library, Spreadsheet::ParseExcel, used in ESG’s malware protection features. This issue...
Leveraging digital twin technology, Google Research has collaborated with the Seattle Department of Transportation to simulate real-world traffic flows. This initiative aims to address the challenges of traffic dispersion following large-scale events involving numerous...
In the complex domain of cybersecurity, the emergence of RetSpill marks a significant shift in the landscape of Linux kernel exploitation. This ingenious technique exploits the kernel’s design to escalate privileges, bypassing multiple layers...
In August, the collaborative release of the Fedora Asahi Remix distribution by the Asahi Linux project team and the Fedora Linux project team. The primary goal of this distribution is to run the Linux...
Fossil, a company that has collaborated extensively with Google on smartwatch operating systems, is reportedly ceasing to release new smartwatch products equipped with Wear OS. Speculations suggest that Fossil may discontinue its partnership with...
In the ever-evolving landscape of cybersecurity, a new attack technique named “SMTP Smuggling” has emerged, posing a significant threat to the integrity of email communications. Discovered by Timo Longin, in collaboration with SEC Consult,...
In the realm of Linux and UNIX operating systems, the “sudo” command is a cornerstone of system administration, allowing users to execute commands with superuser privileges. However, the discovery of CVE-2023-7090 has cast a...
In the realm of Mixed Reality (MR) and Virtual Reality (VR), it has been quite some time since any notable updates have emerged from Microsoft. Previously, Xbox Game Studios head Matt Booty, in an...
Deepin Linux has long been celebrated for its aesthetics and user-friendliness, especially among open-source enthusiasts. Developed by a Chinese team, it has earned a reputation for being one of the most visually appealing Linux...
Details have emerged about a now-patched security vulnerability in OpenSSH that could be potentially exploited to run arbitrary commands remotely on compromised hosts under specific conditions. The vulnerability is tracked under the CVE identifier...