JavaScript is used to imitate a glitchy Zoom call, prompting the user to install an “update.”
threat-management
CISA operates short-staffed without a director, raising concerns over cyber risk.
Researchers tracked the group’s tooling from reconnaissance to encryption.
Apple shifts to more continuous security patches versus waiting for the next big OS release.
Security pros call “containment” victory claim hollow as recovery could cost multi-millions.
Benign content hidden at the bottom of an email is designed to “outweigh” malicious content.
Company also tells customers the attack by Iran-linked Handala disrupted supply chain.
Second major case targeting a U.S. firm after start of Iran conflict Feb. 28.
A simple exploit causes AVs to treat compressed data as uncompressed bytes.
Malware collects info about the OS, user accounts, and host configurations.