Vulnerabilities in animal tracking software USAHERDS and Log4j gave the notorious APT41 group a foothold in multiple government systems.
vulnerabilities
Hackers Find a New Way to Deliver Devastating DDoS Attacks

Cybercriminals are exploiting a fleet of more than 100,000 misconfigured servers to knock websites offline.
Inside the Lab Where Intel Tries to Hack Its Own Chips

Researchers at iSTARE have to think like the bad guys, finding critical flaws before processors go to production.
Millions of WordPress Sites Got a Forced Update for a Serious Bug

The mandatory patch addressed a critical vulnerability in a widely used plugin that allowed untrusted visitors to download a website’s backups.
The CIA Has Secretly Run a ‘Bulk Collection’ Program

Plus: Vulnerability fixes, the return of EARN IT, and more of the week’s top security news.
Hackers Rigged Hundreds of Ecommerce Sites to Steal Payment Info

The attackers exploited a known vulnerability and installed credit card skimmers on more than 500 websites.
An Insidious Mac Malware Is Growing More Sophisticated

When UpdateAgent emerged in late 2020, it utilized basic infiltration techniques. Its developers have since expanded it in dangerous ways.
What’s the Deal With Anti-Cheat Software in Online Games?
.jpg)
Cheat deterrents like kernel drivers are raising legitimate privacy concerns. But it’s not all bad news.
Safari Flaws Exposed Webcams, Online Accounts, and More

Apple awarded a $100,500 bug bounty to the researcher who discovered the latest major vulnerability in its browser.
