Faster, safer, stronger: Sophos Firewall v22 security enhancements
Hardened kernel, remote integrity monitoring, an enhanced anti-malware engine, and more.
Mikael Thalen reports: An app for anonymously reporting individuals accused of speaking ill against conservative activist Charlie Kirk leaked personal data about its users. The app, known as “Cancel the Hate,” was taken offline on Thursday amid an investigation into the data leak by Straight Arrow News. Launched in the wake of Kirk’s assassination on Sept. 10,……
The Hindustan Times reports: The Kerala Police Crime Branch’s move to seize the mobile phone of Aniru Ashokan, a reporter from a Malayalam daily, has triggered a wave of support from local journalists across the state. According to PTI, the Crime Branch’s action came after the journalist reported on the alleged breach of sensitive data…
Three security flaws have been disclosed in the open-source PHP package Voyager that could be exploited by an attacker to achieve one-click remote code execution on affected instances. “When an authenticated Voyager user clicks on a malicious link, attackers can execute arbitrary code on the server,” Sonar researcher Yaniv Nizry said in a write-up published…
Diego Pérez Morales reports: The 2021 cyberattack on T-Mobile exposed sensitive information of 76 million customers, including names, addresses, and Social Security numbers. This breach led to a class-action lawsuit, culminating in a $350 million settlement in 2022. This agreement is notable as the second-largest data breach settlement in U.S. history, only surpassed by Equifax’s $700…
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has shed light on a new malware called RESURGE that has been deployed as part of exploitation activity targeting a now-patched security flaw in Ivanti Connect Secure (ICS) appliances. “RESURGE contains capabilities of the SPAWNCHIMERA malware variant, including surviving reboots; however, RESURGE contains distinctive commands that
From the “Wait-What-Happened-Here Dept:” On October 19, the Black Suit ransomware group announced that they had attacked Rutherford County Schools in Tennessee. Their listing, posted on their dark web site, included what appears to be an indication of what data and how much data they were able to exfiltrate. It did not indicate whether they…