Aggregator
CVE-2021-27082 | Microsoft Quantum Development Kit for Visual Studio Code Remote Code Execution
CVE-2021-27083 | Microsoft Visual Studio Code Remote Containers Extension Remote Code Execution
CVE-2021-26443 | Microsoft Windows up to Server 2022 Virtual Machine Bus privilege escalation
CVE-2021-26444 | Microsoft Azure RTOS information disclosure
CVE-2021-36957 | Microsoft Windows up to Server 2022 Desktop Bridge privileges management
CVE-2021-38631 | Microsoft Windows up to Server 2022 Remote Desktop Protocol information disclosure
CVE-2021-38666 | Microsoft Windows up to Server 2022 Remote Desktop Client Remote Code Execution
CVE-2021-40442 | Microsoft Office up to Online Server Excel Remote Code Execution
CVE-2021-41349 | Microsoft Exchange Server 2013 CU23/2016 CU22/2019 CU11 information disclosure
CVE-2021-41351 | Microsoft Edge IE Mode information disclosure
CVE-2021-41356 | Microsoft Windows up to Server 2022 denial of service
Google Chrome 151 Chromoting Flaw Allows Attackers to Execute Malicious Code Remotely
Google has released Chrome 151 Stable, fixing seven security vulnerabilities, including a critical use-after-free flaw in Chromoting that could potentially allow remote code execution. The update is rolling out as version 151.0.7922.173/.174 for Windows and macOS, and version 151.0.7922.173 for Linux. The most severe issue is tracked as CVE-2026-76017 and affects Chromoting, the technology used […]
The post Google Chrome 151 Chromoting Flaw Allows Attackers to Execute Malicious Code Remotely appeared first on Cyber Security News.
China-Linked Spy Campaign Uses Five New Malware Families Against Central Asian Governments
Central Asian government bodies have been targeted in a cyberespionage operation using a compact but varied set of remote access tools. The activity, tracked as SilkParasite, relied on convincing government-themed documents and trusted Windows programs to quietly place malware on victims’ systems. The campaign appears designed for intelligence collection rather than widespread disruption. Its operators […]
The post China-Linked Spy Campaign Uses Five New Malware Families Against Central Asian Governments appeared first on Cyber Security News.
CVE-2026-63794 | Linux Kernel up to 7.1.2 Kvm Svm sev_dbg_crypt len use after free (Nessus ID 330014 / WID-SEC-2026-2403)
CVE-2026-63795 | Linux Kernel up to 7.1.2 9p Client p9_client_walk clone use after free (Nessus ID 330014 / WID-SEC-2026-2403)
A $25 template helped scammers build hundreds of phantom bank domains
A phrase on a suspicious website turned into an investigation of phantom banks built to support scams, according to new research from Allure Security. Molly DeQuattro, the company’s VP of Operations, was reviewing a domain that resembled the brand of one of its financial services clients. The page carried none of that client’s branding. It presented an unrelated bank instead. One phrase caught her attention: “one of the largest digital banking providers.” She searched public … More →
The post A $25 template helped scammers build hundreds of phantom bank domains appeared first on Help Net Security.