Microsoft has addressed a critical Windows MSHTML zero-day vulnerability, tracked as CVE-2024-38112, which has been actively exploited in cyberattacks for eighteen months. This high-severity MHTML spoofing issue, fixed during the July 2024 Patch Tuesday security updates, allowed malicious scripts to bypass built-in security features. Haifei Li of Check Point Research discovered the vulnerability and reported […]
A critical data breach, dubbed RockYou2024, has exposed a staggering 10 billion unique user credentials, posing a significant threat to online security on a global scale. This unprecedented incident, discovered by cybersecurity researchers at Cybernews, dwarfs previous data breaches in terms of volume and significantly increases the risk of identity theft and account compromise for […]
Recent data breach exposes limitations of password-only security A major security incident at Snowflake, a cloud data storage provider trusted by numerous organizations including banks and retailers, has reignited discussions about the inadequacy of passwords as the sole method of online account protection. The breach, which affected companies like Ticketmaster and Santander, reportedly involved attackers […]