Outlook Security Feature Bypass Allowed Sending Malicious Links

outlook-security-feature-bypass-allowed-sending-malicious-links

A Trustwave researcher has discovered a new technique to completely bypass a security feature of Microsoft Outlook and deliver a malicious link to the recipient.

The new technique, Trustwave SpiderLabs lead threat architect Reegun Richard Jayapaul explains, is a variation of a vulnerability that was initially addressed in February 2020.

read more

Apple Patches ‘Actively Exploited’ iOS Security Flaw

apple-patches-‘actively-exploited’-ios-security-flaw

Apple late Wednesday pushed out an urgent iOS update with fixes for 11 documented security flaws and warned that one of the vulnerabilities “may have been actively exploited.”

In a barebones advisory, Apple acknowledged the zero-day took aim at a memory corruption issue in IOMobileFrameBuffer, an oft-targeted iOS kernel extension.

read more