Suspected Chinese hackers implicated in Barracuda ESG zero-day attack incidents

A hacker group known as UNC4841, believed to have affiliations with China, has been identified as the culprit behind a series of data theft attacks on Barracuda ESG (Email Security Gateway) appliances. The attacks exploited a zero-day vulnerability, CVE-2023-2868, in Barracuda’s email attachment scanning module, which has since been patched. The exploitation of the zero-day […]

Malwarebytes Users Encounter Google Chrome Compatibility Issues Due to Windows 11 KB5027231 Update

Malwarebytes has confirmed that the recent Windows 11 22H2 KB5027231 cumulative update, released during Patch Tuesday, is causing compatibility problems for Google Chrome on its customers’ systems. Users and Windows administrators have reported that their devices are experiencing issues after installing the Windows 11 updates from the previous day. While uninstalling the KB5027231 update resolves […]

Bug in WordPress Stripe payment plugin exposes customer order information

Unauthenticated users can access customer order details due to a bug in the WordPress Stripe payment plugin A vulnerability has been discovered in the WooCommerce Stripe Gateway plugin for WordPress, which enables unauthenticated users to view order details from the plugin. This popular payment gateway, with 900,000 active installations, allows WordPress e-commerce websites to accept […]

Enhanced Security Measures Introduced for Google Chrome Password Manager to Protect Your Credentials

Google Chrome is rolling out new security features for its integrated Password Manager, providing users with improved password management capabilities and increased protection against account hijacking attempts. Google has recently unveiled five new features that reinforce the security of data stored in its Password Manager, fortifying user protection against potential risks. The first addition is […]