The Information Highway

The Information Highway

Read the latest technology news, your comprehensive source for the latest breakthroughs, trends, and innovations shaping the world of technology.

CISA shares vulnerabilities, misconfigs used by ransomware gangs

CISA

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has unveiled additional details regarding misconfigurations and security vulnerabilities exploited by ransomware gangs, aiming to help critical infrastructure organizations thwart their attacks. 

Continue reading
  1282 Hits

Apple fixes iOS Kernel zero-day vulnerability on older iPhones

apple_triangle

Apple has published security updates for older iPhones and iPads to backport patches released one week ago, addressing two zero-day vulnerabilities exploited in attacks. 

Continue reading
  874 Hits

Shadow PC warns of data breach as hacker tries to sell gamers' info

shadow

Shadow PC, a provider of high-end cloud computing services, is warning customers of a data breach that exposed customers' private information, as a threat actor claims to be selling the stolen data for over 500,000 customers. 

Continue reading
  851 Hits

Windows 11 KB5031354 cumulative update released with new features

windows-10-sapphire

Microsoft has released the Windows 11 22H2 KB5031354 cumulative update to fix security vulnerabilities. This is the first Patch Tuesday update with access to Windows 11 Moment 4 features, provided you turn on the "Get latest updates" toggle

Continue reading
  780 Hits

Microsoft October 2023 Patch Tuesday fixes 3 zero-days, 104 flaws

patch-tuesday-larg_20231014-184740_1

Today is Microsoft's October 2023 Patch Tuesday, with security updates for 104 flaws, including three actively exploited zero-day vulnerabilities. 

Continue reading
  886 Hits

Genetics firm 23andMe says user data stolen in credential stuffing attack

dna

23andMe has confirmed that it is aware of user data from its platform circulating on hacker forums and attributes the leak to a credential-stuffing attack. 

Continue reading
  935 Hits

Microsoft officially removes Cortana for Windows 11 Insiders

Cortana

Microsoft finally removed the Cortana standalone app from Windows 11 in the latest preview build for Insiders in the Canary Channel. 

Continue reading
  939 Hits

China-linked cyberspies backdoor semiconductor firms with Cobalt Strike

motherboard-cpu-bios

Hackers engaging in cyber espionage have targeted Chinese-speaking semiconductor companies with TSMC-themed lures that infect them with Cobalt Strike beacons. 

Continue reading
  866 Hits

NSA and CISA reveal top 10 cybersecurity misconfigurations

Hacker

The National Security Agency (NSA) and the Cybersecurity and Infrastructure Security Agency (CISA) revealed today the top ten most common cybersecurity misconfigurations discovered by their red and blue teams in the networks of large organizations. 

Continue reading
  850 Hits

Microsoft releases new, faster Teams app for Windows and Mac PCs

A new Microsoft Teams application, faster and completely redesigned, is generally available for all Windows and macOS users starting today. 

Continue reading
  948 Hits

Lyca Mobile investigates customer data leak after cyberattack

lyca-white

Lyca Mobile has released a statement about an unexpected disruption on its network caused by a cyberattack that may have also compromised customer data. 

Continue reading
  924 Hits

Apple emergency update fixes new zero-day used to hack iPhones

Apple

Apple released new emergency security updates on Wednesday to patch two new zero-day vulnerabilities known to be exploited in attacks. 

Continue reading
  865 Hits

Microsoft: Hackers target Azure cloud VMs via breached SQL servers

MSSQL

Hackers have been observed trying to breach cloud environments through Microsoft SQL Servers vulnerable to SQL injection. 

Continue reading
  1037 Hits

Emergency alert on US phones and TVs today — Don’t worry, it’s just a test

FEMA_headpic

The U.S. Federal Emergency Management Agency (FEMA) and the Federal Communications Commission (FCC) will run an emergency alert test today to check Emergency Alert System (EAS) and Wireless Emergency Alerts (WEA) capabilities nationwide. 

Continue reading
  882 Hits

Sony confirms data breach impacting thousands in the U.S.

SONY

Sony Interactive Entertainment (Sony) has notified current and former employees and their family members about a cybersecurity breach that exposed personal information. 

Continue reading
  833 Hits

New Microsoft Azure AD CTS feature can be abused for lateral movement

microsoft-azure-headpic

Microsoft's new Azure Active Directory Cross-Tenant Synchronization (CTS) feature, introduced in June 2023, has created a new potential attack surface that might allow threat actors to more easily spread laterally to other Azure tenants. 

Continue reading
  999 Hits

Microsoft fixes Outlook prompts to reopen closed windows

Outlook

Microsoft has resolved a known issue that caused Outlook Desktop to unexpectedly prompt users to reopen previously closed windows. 

Continue reading
  902 Hits

Exploit released for Microsoft SharePoint Server auth bypass flaw

SharePoint

Proof-of-concept exploit code has surfaced on GitHub for a critical authentication bypass vulnerability in Microsoft SharePoint Server, allowing privilege escalation. 

Continue reading
  1043 Hits

Microsoft breach led to theft of 60,000 US State Dept emails

Hacker_world_map

Chinese hackers stole tens of thousands of emails from U.S. State Department accounts after breaching Microsoft's cloud-based Exchange email platform in May. 

Continue reading
  1062 Hits

Bing Chat responses infiltrated by ads pushing malware

bing-chat-header-blue

Malicious advertisements are now being injected into Microsoft's AI-powered Bing Chat responses, promoting fake download sites that distribute malware. 

Continue reading
  1031 Hits

Top Breaches Of 2023

Customers Affected In T-Mobile Breach
Accounts Affected In MOVEit Breach
Customers Affected In MCNA Insurance Data Breach
Individuals Affected In PharMerica Data Breach
Users Affected In ChatGPT Major Data Breach
*Founder Shield End of Year 2023