Tag Archives: zero-day

Casualties keep growing in this month’s mass exploitation of MOVEit 0-day

reader comments 18 with The dramatic fallout continues in the mass exploitation of a critical vulnerability in a widely used file-transfer program, with at least three new victims coming to light in the past few days. They include the New York City Department of Education and energy companies Schneider Electric and Siemens Electric. To date,… Read More »

Three iOS 0-days revealed by researcher frustrated with Apple’s bug bounty

Enlarge / Pseudonymous researcher illusionofchaos joins a growing legion of security researchers frustrated with Apple’s slow response and inconsistent policy adherence when it comes to security flaws. Aurich Lawson | Getty Images reader comments 88 with 56 posters participating, including story author Share this story Yesterday, a security researcher who goes by illusionofchaos dropped public notice… Read More »

Apple patches “FORCEDENTRY” zero-day exploited by Pegasus spyware

Aurich Lawson | Getty Images reader comments 44 with 39 posters participating Share this story Apple has released several security updates this week to patch a “FORCEDENTRY” vulnerability on iOS devices. The “zero-click, zero-day” vulnerability has been actively exploited by Pegasus, a spyware app developed by the Israeli company NSO Group, which has been known… Read More »