Tag Android

Thousands of Mobile Apps Put Unsecured Firebase Databases at Risk

Recent investigations by mobile security experts have unveiled extensive vulnerabilities within Firebase databases used by numerous iOS and Android applications. These deficiencies have exposed over 100 million data records, including unencrypted passwords, user identifiers, geographical data, and in certain instances, sensitive financial information related to banking and cryptocurrency transactions. As…

Read MoreThousands of Mobile Apps Put Unsecured Firebase Databases at Risk

Microsoft’s January 2024 Windows Update Addresses 48 New Vulnerabilities

In a significant update released for January 2024, Microsoft has patched a total of 48 security vulnerabilities across its software ecosystem. This month’s Patch Tuesday includes two flaws classified as Critical and 46 as Important. Notably, there are no indications that any of these vulnerabilities are being actively exploited or…

Read MoreMicrosoft’s January 2024 Windows Update Addresses 48 New Vulnerabilities

New PIN Verification Bypass Vulnerability Impacts Visa Contactless Payments

In a troubling development for the cybersecurity landscape, Visa has alerted the public to a JavaScript web skimmer called Baka. Concurrently, a group of researchers from ETH Zurich has identified a critical authentication vulnerability in Visa’s EMV-enabled payment cards, which could be exploited by cybercriminals to unlawfully extract funds from…

Read MoreNew PIN Verification Bypass Vulnerability Impacts Visa Contactless Payments

U.S. Treasury Imposes Sanctions on Iranian Intelligence-Supported Hacking Group

The U.S. government announced extensive sanctions on Thursday against an Iranian cybersecurity threat actor associated with the Ministry of Intelligence and Security (MOIS). The sanctions are a response to a series of malware campaigns that have targeted Iranian dissidents, journalists, and entities within the telecom and travel sectors globally. According…

Read MoreU.S. Treasury Imposes Sanctions on Iranian Intelligence-Supported Hacking Group

France Fines Google $57 Million for Insufficient Transparency and Consent

In a significant enforcement action under the European Union’s General Data Protection Regulation (GDPR), France’s data protection authority, CNIL, has imposed a €50 million (approximately $57 million) fine on Google. This marks the first major penalty levied under the GDPR since its implementation in May 2018. The CNIL cited “lack…

Read MoreFrance Fines Google $57 Million for Insufficient Transparency and Consent

Microsoft Releases Fixes for 73 Vulnerabilities, Including Two Windows Zero-Day Exploits

In its February 2024 Patch Tuesday updates, Microsoft has issued fixes for 73 security vulnerabilities across its software ecosystem, including two zero-day flaws currently under active exploitation. Among these vulnerabilities, five have been categorized as Critical and 65 as Important, while three have a Moderate severity rating. This release also…

Read MoreMicrosoft Releases Fixes for 73 Vulnerabilities, Including Two Windows Zero-Day Exploits

Urgent: Apple Releases Critical Updates to Address Actively Exploited Zero-Day Vulnerabilities

Apple Releases Critical Security Updates to Address Exploited Vulnerabilities Apple has issued new security updates aimed at mitigating significant flaws in its operating systems, including vulnerabilities that have reportedly been exploited in the wild. The updates come in response to the discovery of two critical memory corruption issues affecting the…

Read MoreUrgent: Apple Releases Critical Updates to Address Actively Exploited Zero-Day Vulnerabilities

Abuse of Spyware on Signal and WhatsApp Targeting U.S. Officials

Data Privacy, Data Security, Endpoint Security Cyber Advisory Highlights Exploitation of Linked Devices in Monitoring Sensitive Communications Chris Riotta (@chrisriotta) • November 25, 2025 Image: Shutterstock The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has issued a warning about cyber threat actors targeting current and former high-ranking government officials, military…

Read MoreAbuse of Spyware on Signal and WhatsApp Targeting U.S. Officials

Microsoft Addresses 149 Vulnerabilities in Major April Patch Update, Including Zero-Day Exploits

In April 2024, Microsoft announced a critical security update addressing an unprecedented 149 vulnerabilities, with two of these flaws identified as actively exploited threats. This latest update categorizes three of the vulnerabilities as Critical, 142 as Important, three as Moderate, and one as Low in severity. Additionally, the update follows…

Read MoreMicrosoft Addresses 149 Vulnerabilities in Major April Patch Update, Including Zero-Day Exploits