Venture capital investors have invested another $31 million into Sphere Technology Solutions, a New Jersey startup building technology to help defenders manage identities and access to sensitive data.
Google Links Exploitation Frameworks to Spanish Spyware Vendor Variston
Google’s Threat Analysis Group (TAG) has linked three exploitation frameworks, as well as several vulnerabilities that were likely used as zero-days at some point, to a Spanish commercial spyware vendor named Variston.
Chrome 108 Patches High-Severity Memory Safety Bugs
Google this week announced the release of Chrome 108 in the stable channel with patches for 28 vulnerabilities, including 22 reported by external researchers.
Of the externally reported security defects, eight are high-severity issues and 14 are medium-severity flaws.
Delta Electronics Patches Serious Flaws in Industrial Networking Devices
Taiwan-based Delta Electronics has patched potentially serious vulnerabilities in two of its industrial networking products.
The flaws were identified by researchers at CyberDanube, a new industrial cybersecurity company based in Austria, in Delta’s DX-2100-L1-CN 3G cloud router and the DVW-W02W2-E2 industrial wireless access point.
Developers Warned of Critical Remote Code Execution Flaw in Quarkus Java Framework
Developers have been warned that the popular Quarkus framework is affected by a critical vulnerability that could lead to remote code execution.
Available since 2019, Quarkus is an open source Kubernetes-native Java framework designed for GraalVM and HotSpot virtual machines.
Self-Replicating Malware Used by Chinese Cyberspies Spreads via USB Drives
A China-linked cyberespionage group tracked as UNC4191 has been observed using self-replicating malware on USB drives to infect targets, and the technique could allow them to steal data from air-gapped systems, Google-owned Mandiant reports.
OT:Icefall Continues With Vulnerabilities in Festo, Codesys Products
Forescout Technologies has disclosed the details of three new vulnerabilities identified by its researchers in operational technology (OT) products from Festo and Codesys.
Ransomware Gang Takes Credit for Maple Leaf Foods Hack
The Black Basta ransomware group has taken credit for the recently disclosed attack on Canadian meat giant Maple Leaf Foods.
The cybercriminals have made public several screenshots of technical documents, financial information and other corporate files to demonstrate that they gained access to Maple Leaf Foods systems.
Vulnerability in Acer Laptops Allows Attackers to Disable Secure Boot
A vulnerability impacting multiple Acer laptop models could allow an attacker to disable the Secure Boot feature and bypass security protections to install malware.
Cybercriminals Selling Access to Networks Compromised via Recent Fortinet Vulnerability
Security researchers at Cyble have observed initial access brokers (IABs) selling access to enterprise networks likely compromised via a recently patched critical vulnerability in Fortinet products.












