Video messaging technology powerhouse Zoom has rolled out a high-priority patch for macOS users alongside a warning that hackers could abuse the software flaw to connect to and control Zoom Apps.
Flaw in Microsoft OME Could Lead to Leakage of Encrypted Data
QBot Malware Infects Over 800 Corporate Users in New, Ongoing Campaign
More than 800 corporate users have been infected in a new QBot malware distribution campaign since September 28, Kaspersky warns.
Microsoft Warns of New Zero-Day; No Fix Yet For Exploited Exchange Server Flaws
Microsoft on Tuesday released software fixes to address more than 90 security defects affecting products in the Windows ecosystem and warned that one of the vulnerabilities was already being exploited as zero-day in the wild.
Patch Tuesday: Critical Flaws in ColdFusion, Adobe Commerce
Software maker Adobe on Tuesday released security patches for 29 documented vulnerabilities across multiple enterprise-facing products and warned that hackers could exploit these bugs to take complete control of vulnerable machines.
Toyota Discloses Data Breach Impacting Source Code, Customer Email Addresses
Japanese car manufacturer Toyota has disclosed a security incident that involved source code hosted on GitHub and which may have resulted in unauthorized access to roughly 300,000 customer email addresses.
Endor Labs Joins Race to Secure Software Supply Chain
It’s officially a venture capital funding frenzy in the software supply chain security space.
Critical Zimbra RCE Vulnerability Exploited in Attacks
The Zimbra Collaboration Suite is impacted by a critical remote code execution vulnerability that remains unpatched, despite being exploited in attacks.
Former Uber CISO Joe Sullivan Found Guilty Over Breach Cover-Up

A San Francisco jury on Wednesday found former Uber security chief Joe Sullivan guilty of covering up a 2016 data breach and concealing information on a felony from law enforcement.
KKR Boosts NetSPI Stake with $410 Million Investment
Private equity giant KKR is expanding its big bet on penetration testing and attack surface management firm NetSPI with a new $410 million investment round.












