Uncategorized

Critical Atlassian 0-day is under active exploit. You’re patched, right?

Enlarge (credit: Getty Images) About this time last week, threat actors began quietly tapping a previously unknown vulnerability in Atlassian software that gave them almost complete control over a small number of servers.…

Meeting Owl videoconference device used by govs is a security disaster

Enlarge (credit: Owl Labs) The Meeting Owl Pro is a videoconference device with an array of cameras and microphones that captures 360-degree video and audio and automatically focuses on whoever is speaking to…

Code execution 0-day in Windows has been under active exploit for 7 weeks

Enlarge (credit: Getty Images) A critical code execution zero-day in all supported versions of Windows has been under active exploit for seven weeks, giving attackers a reliable means for installing malware without triggering…

How to make critical infrastructure safer—there’s a long way to go

Making critical infrastructure safer at Ars Frontiers. Click here for transcript. (video link) In the run-up to Ars Frontiers, I had the opportunity to talk with Lesley Carhart, director of Incident Response at…

1.1 quintillion operations per second: US has world’s fastest supercomputer

Enlarge / Systems engineer Matt Ezell, the system lead for the Frontier supercomputer at Oak Ridge National Laboratory. (credit: Oak Ridge National Laboratory) The US has retaken the top spot in the world…

Broadcom plans a “rapid transition” to subscription revenue for VMware

Enlarge / A sign in front of a Broadcom office on June 03, 2021, in San Jose, California. (credit: Getty Images | Justin Sullivan ) Broadcom announced last week that it was seeking…

The mystery of China’s sudden warnings about US hackers

Enlarge / Chinese flag with digital matrix -Innovation Concept - Digital Tech Wallpaper - 3D illustration (credit: peterschreiber.media | Getty Images) For the best part of a decade, US officials and cybersecurity companies…

Information security gets personal: How to protect yourself and your stuff

Redefining privacy at Ars Frontiers. Click here for transcript. (video link) At the Ars Frontiers event in Washington, DC, I had the privilege of moderating two panels on two closely linked topics: digital…

US college VPN credentials for sale on Russian crime forums, FBI says

Enlarge (credit: Getty Images) The FBI on Friday said that thousands of compromised credentials harvested from US college and university networks are circulating on online crime forums in Russia and elsewhere—and could lead…

Critical Zoom vulnerabilities fixed last week required no user interaction

Enlarge (credit: Zoom) Google's Project Zero vulnerability research team detailed critical vulnerabilities Zoom patched last week making that made it possible for hackers to execute zero-click attacks that remotely ran malicious code on…