Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari
The updates fix vulnerabilities in WebKit, the kernel, WebRTC, Web Extensions, and other components affecting iPhone, iPad, Mac, and Safari users.
The post Apple Patches Dozens of Vulnerabilities Across iOS, macOS, and Safari appeared first on SecurityWeek.
Dawnguard Raises $6.3 Million for Security Architecture Automation Platform
The company has publicly launched its solution to help organizations design, build, and operate secure cloud systems.
The post Dawnguard Raises $6.3 Million for Security Architecture Automation Platform appeared first on SecurityWeek.
Massive Password Spray Campaign Targeting Azure CLI
Hackers were seen making over 81 million login attempts originating from systems associated with hosting provider LSHIY.
The post Massive Password Spray Campaign Targeting Azure CLI appeared first on SecurityWeek.
Adobe patches seven max severity ColdFusion, Campaign flaws
Phantom Squatting Uses AI-Hallucinated Domains for Phishing and Malware
Palo Alto Networks’ Unit 42 calls the trick phantom squatting, and its new research shows it is already happening in the wild.
The reason it matters is
Anthropic Restores Claude Fable 5 After U.S. Lifts Jailbreak-Linked Export Controls
Fable 5 returns to users on Wednesday, July 1, across Claude.ai, the Claude Platform, Claude Code, and Claude Cowork.
Export controls restrict who can
Google Patches 382 Chrome Vulnerabilities
Fifteen of the newly patched flaws have been rated ‘critical’ and 67 have been rated ‘high severity’.
The post Google Patches 382 Chrome Vulnerabilities appeared first on SecurityWeek.
Azure CLI Password Spray Hits at Least 78 Microsoft Accounts in 81M+ Attempts
The activity, per Huntress, originates from an IPv6 address range (2a0a:d683::/32) controlled by internet infrastructure provider LSHIY LLC (AS32167).
“Between June 12 and June 26, the threat
Researcher Analyzes 3,000 Live ClickFix Payloads, Exposing API-Driven Malware Delivery
New research shows the malicious commands behind its fake “prove you’re human” pages are now handed out by API-driven servers that give each visitor the same malware in a different disguise. The same research also turned up a new delivery method built to slip past Windows’ script scanning.
