Microsoft has addressed a critical Windows MSHTML zero-day vulnerability, tracked as CVE-2024-38112, which has been actively exploited in cyberattacks for eighteen months. This high-severity MHTML spoofing issue, fixed during the July 2024 Patch Tuesday security updates, allowed malicious scripts to bypass built-in security features. Haifei Li of Check Point Research discovered the vulnerability and reported […]
The American Radio Relay League (ARRL) has confirmed that a ransomware gang stole data in a cyberattack that occurred in May, initially referred to as a “serious incident.” In notifications sent to those affected, ARRL, the National Association for Amateur Radio, revealed that the “sophisticated ransomware incident” was detected on May 14, when attackers breached and […]