Cybersecurity

Qualcomm chip vulnerability enables remote attack by voice call

Qualcomm disclosed a critical vulnerability on New Year’s Day that would allow remote attacks via malicious voice calls over LTE networks. The January 2024 security bulletin lists a total of 26 vulnerabilities, including four critical vulnerabilities, affecting Qualcomm chipsets. Patches have already been made available to original equipment manufacturers (OEMs) whose devices use Qualcomm chips, […]

Cybersecurity

SonicWall acquires Banyan to boost zero-trust, SSE offerings | TechTarget

Security vendor SonicWall is expanding its zero-trust network offerings with the acquisition of Banyan Security. On Wednesday, SonicWall announced that it acquired Banyan Security, a startup founded in 2015 that provides a cloud-based zero-trust network access (ZTNA) security architecture through its security service edge (SSE) platform. SonicWall purchased Banyan for an undisclosed amount on Dec. […]

Cybersecurity

Cross Switch Suffers Data Breach: 3.6 Million Records Allegedly Exposed

Cross Switch, a leading company in online payment gateway management, is currently dealing with the repercussions of a significant data breach. The Cross Switch data breach, reportedly carried out by a threat actor identified as IntelBroker, has allegedly compromised the personal information of 3.6 million users. This includes sensitive details such as full names, emails, […]

Cybersecurity

Malware Using Google MultiLogin Exploit to Maintain Access Despite Password Reset

Jan 03, 2024NewsroomMalware / Data Theft Information stealing malware are actively taking advantage of an undocumented Google OAuth endpoint named MultiLogin to hijack user sessions and allow continuous access to Google services even after a password reset. According to CloudSEK, the critical exploit facilitates session persistence and cookie generation, enabling threat actors to maintain access […]