After Microsoft threatened legal action, a security researcher publishes a new Windows zero-day bug

This is the latest zero-day released by security researcher Nightmare Eclipse, despite Microsoft publicly threatening to take legal action against them.

Google Swiss Cheese Model Blocks 7 Billion Chrome Notifications A Day

Google has confirmed that it is blocking 7 billion abusive Chrome push notifications every day using the Swiss Cheese security model. Here’s what you need to know.

Passenger returning from DEF CON 34 spoofs Delta Wi-Fi network while in flight using pentest tool — pilots tell ground crew to alert corporate security after attendee from hacking conference brings the party to the sky

A flight carrying passengers who attended a cybersecurity convention reportedly had its Wi-Fi network victimized by deauthentication attacks while an ‘evil twin’ hotspot rerouted potential victims to a phishing website. While flight safety was never affected, it’s unclear if any of the other passengers had their credentials stolen while in the air.

Microsoft Windows 0-Day Attack Deploys Lazarus Rootkit—Patch Now

Microsoft has released a patch for a Windows use-after-free zero-day vulnerability already being exploited to deploy malware used by the Lazarus hacking group.

Cytix raises $7M Series A to tackle cyber risks from AI-driven software development

Cybersecurity startup Cytix has raised $7 million in SeriesA funding to accelerate the rollout of its change risk management platform andexpand adoption among enterprise and regulated organisations. T…

FBI says cybercriminals are hacking into victims’ online accounts to steal their intimate pictures

In a new alert, the FBI said cybercriminals are targeting adults and minors in an attempt to steal their personal and intimate pictures in extortion campaigns.

Municipal Water System Attacks Spotlight Insecure Industrial Systems

Cyberattacks are sobering reminders of vulnerabilities common in industrial automation, but there are steps the affected organizations can take to secure their systems.

Delta investigating after someone set up fake Wi-Fi network mid-flight

The Delta flight crew switched off the aircraft’s legitimate Wi-Fi network for around 30 minutes due to the incident, according to a spokesperson.

North Korean remote IT staffer worked for US government agency, says FBI

The investigation shows that North Koreans are able to infiltrate government agencies, as well as private organizations and crypto exchanges.