The Breach News

Here’s How Hackers Might Have Accessed Your DJI Drone Account

Potential Vulnerability Discovered in DJI Drone Web App: Implications for User Security Cybersecurity researchers from Check Point have unveiled details about a significant vulnerability in the DJI Drone web application that posed risks to user accounts and sensitive data. This flaw potentially allowed attackers to access information such as flight…

Read MoreHere’s How Hackers Might Have Accessed Your DJI Drone Account

Users Express Discontent as AMD Removes Memory Crypto from Consumer CPUs

Lack of Clarity Surrounds AMD’s TSME Support for Consumer CPUs In a recent exchange, AMD engineer Limoncello denied further commentary regarding the company’s stance on Transparent Secure Memory Encryption (TSME) for consumer CPUs, effectively concluding the conversation initiated by Kilpatrick. This abrupt termination leaves users seeking clarity on the implications…

Read MoreUsers Express Discontent as AMD Removes Memory Crypto from Consumer CPUs

63 Newly Discovered Vulnerabilities (Including 0-Days) Windows Users Must Address Immediately

In this month’s Patch Tuesday, Microsoft released a significant round of security updates addressing 63 vulnerabilities within its products, including the Windows operating system. Among these, 12 vulnerabilities have been categorized as critical, 49 as important, one as moderate, and one as low in severity. System administrators are urged to…

Read More63 Newly Discovered Vulnerabilities (Including 0-Days) Windows Users Must Address Immediately

Meta Partners with Pentagon Supplier to Develop Face Recognition Technology for Its Glasses

Meta is currently assessing the implementation of face-recognition technology developed by Rank One Computing, a company known for supplying surveillance tools to law enforcement and military agencies in the United States. This initiative aims to integrate the technology into Meta’s smart glasses, as confirmed by internal sources. The association between…

Read MoreMeta Partners with Pentagon Supplier to Develop Face Recognition Technology for Its Glasses

Zero-Day Vulnerabilities Discovered in iPhone X, Samsung Galaxy S9, and Xiaomi Mi6 Smartphones

Pwn2Own 2018: A Showcase of Mobile Vulnerabilities The Pwn2Own 2018 mobile hacking competition, held in Tokyo on November 13-14, demonstrated the ongoing vulnerability of even well-secured smartphones. White hat hackers successfully exploited fully patched devices, including flagship models from renowned manufacturers, revealing concerning security gaps. Key targets included the iPhone…

Read MoreZero-Day Vulnerabilities Discovered in iPhone X, Samsung Galaxy S9, and Xiaomi Mi6 Smartphones

Three New Code Execution Vulnerabilities Found in Atlantis Word Processor

Recent discoveries made by cybersecurity researchers at Cisco Talos have highlighted critical vulnerabilities in the Atlantis Word Processor, drawing attention to the importance of scrutinizing seemingly harmless email attachments, particularly those in Word or PDF formats. These vulnerabilities could allow remote attackers to execute arbitrary code, potentially compromising the affected…

Read MoreThree New Code Execution Vulnerabilities Found in Atlantis Word Processor

Earn up to $40,000 for discovering methods to hack Facebook or Instagram accounts.

Facebook Increases Rewards for Bug Bounty Program Amid Concerns Over Vulnerabilities In a significant move aimed at bolstering cybersecurity, Facebook has announced an increase in its bug bounty rewards, reaching up to $40,000 for reporting serious account takeover vulnerabilities across its platforms, including Instagram and WhatsApp. This initiative, highlighted in…

Read MoreEarn up to $40,000 for discovering methods to hack Facebook or Instagram accounts.

How Simply Opening a Website in Safari Could Have Compromised Your Apple macOS

Earlier this week, the Dropbox security team disclosed three severe vulnerabilities affecting the Apple macOS operating system. These vulnerabilities could potentially enable a remote attacker to execute malicious code on a targeted Mac by simply persuading a user to visit a harmful webpage. The vulnerabilities were initially identified by Syndis,…

Read MoreHow Simply Opening a Website in Safari Could Have Compromised Your Apple macOS

Caution! Unprivileged Linux Users with UID Greater Than INT_MAX Can Execute Any Command

A significant vulnerability has been identified in Linux operating systems that could potentially allow users with low-privilege accounts to execute unauthorized system control commands. The flaw is attributed to PolicyKit—a toolkit that manages permissions and privileges on Unix-like systems. This issue, designated as CVE-2018-19788, affects PolicyKit version 0.115, which is…

Read MoreCaution! Unprivileged Linux Users with UID Greater Than INT_MAX Can Execute Any Command