Microsoft this week announced the general availability of Defender for Business, an endpoint security solution aimed small- and medium-sized businesses (SMBs).
Google Paid Out Over $100,000 for Vulnerabilities Patched by Chrome 99
Google this week released Chrome 99 to the stable channel with a total of 28 security fixes inside, including 21 for vulnerabilities reported by external researchers.
NVIDIA Confirms Employee Credentials Stolen in Cyberattack
NVIDIA this week acknowledged that employee credentials were stolen during a cyberattack on February 23 and confirmed the attackers have started leaking the information online.
The compromise occured on February 23 and impacted certain “IT resources,” an NVIDIA spokesperson told SecurityWeek.
Cyberattacks in Ukraine: New Worm-Spreading Data-Wiper With Ransomware Smokescreen
Cybersecurity researchers tracking destructive data-wiping malware attacks in Ukraine are finding signs of new malware with worm-spreading capabilities and what appears to be a rudimentary ransomware decoy.
Critical Vulnerabilities Impact Widely Used Printed Circuit Board File Viewer
Security researchers with Cisco’s Talos division this week disclosed six critical-severity vulnerabilities affecting Gerbv, an open source file viewer for printed circuit board (PCB) designs.
Schneider Relay Flaws Can Allow Hackers to Disable Electrical Network Protections
Vulnerabilities discovered by researchers in some of Schneider Electric’s Easergy relays can allow hackers to disable protections for electrical networks. The vendor has released patches that should address the security flaws.
Microsoft: Cyberattacks in Ukraine Hitting Civilian Digital Targets
Microsoft is calling attention to a surge in cyber attacks on Ukrainian civilian digital targets, warning that the new “digital war” includes destructive malware attacks on emergency response services and humanitarian aid efforts.
The Redmond, Wash. software giant said the attacks on civilian targets raise serious concerns under the Geneva Convention.
Symantec: Super-Stealthy ‘Daxin’ Backdoor Linked to Chinese Threat Actor
Threat hunters at Symantec are calling global attention to a new, highly sophisticated piece of malware being used by a Chinese threat actor to burrow into — and hijack data from — government and critical infrastructure targets.
CISA, FBI Issue Warnings on WhisperGate, HermeticWiper Attacks
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) and Federal Bureau of Investigation (FBI) released indicators of compromise to help threat hunters look for signs of WhisperGate and HermeticWiper, two destructive malware files seen in recent attacks against organizations in Ukraine.
CISA Urges Organizations to Patch Actively Exploited Zimbra XSS Vulnerability
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday announced that it has expanded its Known Exploited Vulnerabilities Catalog with a zero-day recently identified in the Zimbra email platform.











