Patch is ready
Google has released a critical security patch for its Chrome browser after Kaspersky discovered a serious zero-day security vulnerability.
Unencrypted HTTP connections
The Apple Passwords app introduced as part of iOS 18 had a critical security vulnerability that left users vulnerable to phishing attacks over a period of almost three months. The problem was only fixed with the update to iOS 18.2.
Patches available
In January 2025, Arctic Wolf’s threat research team observed suspicious activity on Fortinet FortiGate firewall devices being exploited by the new SuperBlack ransomware. This vulnerability could jeopardize companies that have not yet applied the patch and highlights the growing threat of targeted cyberattacks.
Hackers were able to execute malicious code
Researchers from IT security company ESET have uncovered a serious security vulnerability (CVE-2025-24983) in older versions of Windows. The vulnerability allowed hackers to execute malicious code on affected computers using a zero-day exploit.
Security Breach
A security breach at VW’s software subsidiary Cariad exposed sensitive location data of approximately 800,000 Volkswagen Group electric vehicles for months. According to SPIEGEL, detailed GPS data and vehicle owners’ personal information were freely accessible through an unprotected Amazon cloud storage.
Expedition" migration tool
The American cyber security authority CISA sounded the alarm on Thursday: a serious security vulnerability in the software of IT security company Palo Alto Networks is already being actively exploited by attackers.
Over 50 victims according to Mandiant
Mandiant has published new research on the mass exploitation of the zero-day vulnerability CVE-2024-47575 in FortiManager appliances.
"Sinkclose"
A recently discovered security vulnerability named “Sinkclose” is causing concern. Millions of systems with AMD Ryzen and EPYC processors are potentially affected.
Python Package Index affected
A Vulnerability on Docker Hub allowed admin access to the Python Package Index (PyPI) and the injection of malicious code. The JFrog Security Research Team recently identified and mitigated a critical security vulnerability that could have led to a catastrophic supply chain attack.
Events
Veranstaltungen
Most read articles.
24. March 2025
12. March 2025