Live

Cybersecurity

The latest Cybersecurity coverage — news, analysis, and updates from the WindowsNews.AI desk.

11 stories in view AI assisted desk updated 11:07 AM
Latest Most Read Breaking
Sort
Cybersecurity · Data Security

AuthQuake flaw let attackers brute-force Microsoft 365 MFA on 400M accounts

In December 2024, Oasis Security researchers uncovered a critical vulnerability in Microsoft's Multi-Factor Authentication (MFA) system, known as "AuthQuake." This flaw allowed attackers to bypass...

Advertisement
Authquake · Cybersecurity

AuthQuake attack exploits MFA token flaws; Microsoft urges Conditional Access and FIDO2 keys now.

A newly discovered cybersecurity threat named AuthQuake has emerged, capable of bypassing Microsoft's Multi-Factor Authentication (MFA) protections. This sophisticated attack vector poses significant...

SE Security Desk·79w ago
2024 · Cybersecurity

Microsoft December 2024 Patch Tuesday: 71 Fixes, 6 Zero-Days, 3 Exploited

Microsoft's December 2024 Patch Tuesday has arrived, addressing a total of 71 vulnerabilities across its product ecosystem, including critical fixes for Windows, Office, and Azure. This month's...

SE Security Desk·79w ago
Cve-2024-49071 · Cybersecurity

CVE-2024-49071: Critical Windows Defender Vulnerability Puts Systems at Risk

A newly discovered vulnerability in Windows Defender, tracked as CVE-2024-49071, has raised serious concerns among cybersecurity experts. This critical flaw could allow attackers to bypass...

SE Security Desk·79w ago
Cve-2024-49147 · Cybersecurity

Emergency Patch Required: Microsoft Update Catalog Bug CVE-2024-49147 Enables Remote SYSTEM Access

Microsoft has issued a critical security alert regarding CVE-2024-49147, a dangerous deserialization vulnerability affecting the Microsoft Update Catalog service. This flaw, rated 9.8 on the CVSS...

SE Security Desk·79w ago
Advisory · Cisa

CISA Issues 10 Critical Advisories for Securing Industrial Control Systems Against Cyber Threats

The Cybersecurity and Infrastructure Security Agency (CISA) has released 10 new advisories addressing critical vulnerabilities in industrial control systems (ICS), marking a significant push to...

SE Security Desk·79w ago
Cisa · Cybersecurity

Install Apple’s December 2024 Security Updates Now—Critical iOS & macOS Flaws Under Active Attack

Apple has released critical security updates in December 2024 to address vulnerabilities across its ecosystem, including iOS, macOS, and other platforms. These patches come as cybersecurity threats...

SE Security Desk·79w ago
Ble Vulnerability · Cisa

CISA Advisory: Critical Siemens SENTRON Powercenter 1000 Vulnerability Exposes Industrial Systems to BLE Attacks

The Cybersecurity and Infrastructure Security Agency (CISA) has issued an urgent advisory regarding a critical Bluetooth Low Energy (BLE) vulnerability in Siemens SENTRON Powercenter 1000 devices...

SE Security Desk·79w ago