The Breach News

Vulnerability in Pre-Installed Software Poses Remote Hacking Risk for Many Dell Computers

Vulnerability Discovered in Dell SupportAssist Poses Remote Threat to Users Recent reports have unveiled a serious remote code execution vulnerability in Dell’s SupportAssist utility, a tool pre-installed on a majority of Dell computers. This flaw, identified by 17-year-old independent security researcher Bill Demirkapi, allows potential attackers to compromise systems remotely,…

Read MoreVulnerability in Pre-Installed Software Poses Remote Hacking Risk for Many Dell Computers

Unaddressed Vulnerability in UC Browser Apps May Enable Hackers to Execute Phishing Attacks

Unpatched URL Spoofing Vulnerability Discovered in UC Browser and UC Browser Mini A recently uncovered security flaw poses a significant threat to users of UC Browser and UC Browser Mini, widely used mobile applications developed by Alibaba-owned UCWeb. This vulnerability, which remains unpatched, allows attackers to manipulate the address bar,…

Read MoreUnaddressed Vulnerability in UC Browser Apps May Enable Hackers to Execute Phishing Attacks

Adobe Issues Urgent Security Updates for Flash, Acrobat Reader, and Media Encoder

Adobe Issues Critical Software Updates to Address Security Vulnerabilities Adobe has released its latest round of software updates that patch a total of 87 security vulnerabilities concerning its major products, including Adobe Acrobat, Reader, Flash Player, and Media Encoder. A substantial majority of these vulnerabilities—84—are found within Adobe Acrobat and…

Read MoreAdobe Issues Urgent Security Updates for Flash, Acrobat Reader, and Media Encoder

Microsoft Issues Patches for Critical ‘Wormable Vulnerability’ and 78 Additional Security Concerns

Microsoft Releases Security Updates Addressing 79 Vulnerabilities Microsoft has announced its monthly security updates, releasing patches for a total of 79 CVE-listed vulnerabilities across its software platforms. This month’s updates come with particular urgency as they address a critical wormable vulnerability that can enable malware to spread autonomously from one…

Read MoreMicrosoft Issues Patches for Critical ‘Wormable Vulnerability’ and 78 Additional Security Concerns

New Class of CPU Vulnerabilities Impacts Nearly All Intel Processors Since 2011

Recent research has unveiled an alarming class of speculative execution vulnerabilities that affect Intel processors, impacting all modern devices, including those produced by Apple. These vulnerabilities build upon the widely publicized Spectre and Meltdown flaws, which were discovered last year and led to widespread concern regarding the security risks faced…

Read MoreNew Class of CPU Vulnerabilities Impacts Nearly All Intel Processors Since 2011

PoC Exploit for Unpatched Windows 10 Zero-Day Vulnerability Released Online

An anonymous hacker known by the pseudonym “SandboxEscaper” has disclosed proof-of-concept exploit code for a newly identified zero-day vulnerability impacting the Windows 10 operating system. This marks the hacker’s fifth public disclosure of a zero-day exploit related to Windows within a year. The details of this vulnerability were made available…

Read MorePoC Exploit for Unpatched Windows 10 Zero-Day Vulnerability Released Online

Almost 1 Million Computers Remain Exposed to “Wormable” BlueKeep RDP Vulnerability

Nearly one million Windows systems remain unpatched and vulnerable to a critical remote code execution vulnerability in the Windows Remote Desktop Protocol (RDP), known as BlueKeep and tracked as CVE-2019-0708. This situation persists two weeks after Microsoft released a security patch aimed at addressing the vulnerability. Should this flaw be…

Read MoreAlmost 1 Million Computers Remain Exposed to “Wormable” BlueKeep RDP Vulnerability

Your Linux System is Vulnerable: Just Opening a File in Vim or Neovim Could Lead to Hacking

Linux users are currently facing a significant security risk. A newly uncovered vulnerability in the widely-used command-line text editors Vim and Neovim poses a serious threat, particularly for those who have not recently updated their systems. Discovered by security researcher Armin Razmjou, this high-severity bug (CVE-2019-12735) could allow unauthorized command…

Read MoreYour Linux System is Vulnerable: Just Opening a File in Vim or Neovim Could Lead to Hacking