The Cybersecurity and Infrastructure Security Agency has warned that several vulnerabilities in the Mitsubishi Electric GX Works3 engineering workstation software for industrial control system environments could be exploited to enable access to certain CPU and OPC UA modules, as well as prompt program viewing and execution, according to The Hacker News.
Facebook credentials belonging to more than 300,000 users across 71 countries have been compromised by the Android threat campaign dubbed "Schoolyard Bully Trojan," reports The Hacker News.
Password management provider 1Password has unveiled a new browser extension with automated login saving, storing, and autofilling capabilities in a bid to advance passwordless authentication amid the growing prevalence of credential theft, VentureBeat reports.
In a discussion with FDA official, Sen. Mark Warner shared his biggest healthcare cybersecurity concerns, what’s needed for his incentive program, and calls for a reset on security mindsets.
Numerous zero-day flaws in Windows, Google Chrome, and Mozilla Firefox were noted by Google's Threat Analysis Group to have been leveraged by Spanish custom security solutions provider Variston IT as a means to distribute spyware, TechCrunch reports.
Microsoft has revealed the general availability of built-in protection in Defender for Endpoint that would offer better threat protection for enterprise endpoints, according to BleepingComputer.
Enterprise networks compromised through the exploitation of a recently patched Fortinet vulnerability, tracked as CVE-2022-30684, are having their access sold by initial access brokers over the web, according to SecurityWeek.