The US Cybersecurity and Infrastructure Security Agency (CISA) on Monday warned organizations that a critical Oracle Fusion Middleware vulnerability patched in early 2022 is being exploited in attacks.
Census Bureau Chief Defends New Privacy Tool Against Critics
Report says Census Bureau failed to stop simulated cyberattacks conducted under an operation to test for vulnerabilities
Virginia County Confirms Personal Information Stolen in Ransomware Attack
Southampton County in Virginia last week started informing individuals that their personal information might have been compromised in a ransomware attack.
The incident was identified in September, when a threat actor accessed a server at Southampton and encrypted the data that was stored on it.
Project Zero Flags ‘Patch Gap’ Problems on Android
Vulnerability researchers at Google Project Zero are calling attention to the ongoing “patch-gap” problem in the Android ecosystem, warning that downstream vendors continue to be tardy at delivering security fixes to Android-powered devices.
Irish Regulator Fines Meta 265 Million Euros Over Data Breach
Ireland’s data regulator on Monday slapped Facebook owner Meta with a 265-million-euro ($275-million) fine after details of more than half a billion users were leaked on a hacking website.
Hack-for-Hire Group Targets Android Users With Malicious VPN Apps
A hack-for-hire group known as Bahamut has been targeting Android users with trojanized versions of legitimate VPN applications, ESET reports.
Crackdown on African Cybercrime Leads to Arrests, Infrastructure Takedown
Interpol on Friday announced the arrest of ten individuals suspected of participation in $800,000 scam and fraud operations with global impact.
Twitter Data Breach Bigger Than Initially Reported
A massive Twitter data breach disclosed a few months ago appears to be bigger than initially reported.
Cisco ISE Vulnerabilities Can Be Chained in One-Click Exploit
Multiple vulnerabilities in Cisco Identity Services Engine (ISE) could allow remote attackers to inject arbitrary commands, bypass existing security protections, or perform cross-site scripting (XSS) attacks.
Google Patches Eighth Chrome Zero-Day of 2022
An emergency Chrome update that Google announced on Thanksgiving Day addresses an actively exploited zero-day in the popular browser.












