Security Alerts and Updates

Latest Security Updates for Apple Software
Latest Security Tests from AV-Comparatives

January 2025 (Click listings for more information).
14. January Windows updates may fail if Citrix SRA is installed.
14. Allstate car insurer sued for tracking drivers without permission.
14. Mozilla fixes Firefox hanging on YouTube & Google Docs, startup crashes, & more.
14. Windows 10 KB5049981 update released with new BYOVD blocklist.
14. Microsoft January Patch Tuesday fixes 8 zero-days, 159 flaws.
14. Windows 11 KB5050009 & KB5050021 cumulative updates released.
14. January 2025 patches get released – by Susan Bradley.
14. Hackers use FastHTTP in new high-speed Microsoft 365 password attacks.
14. Microsoft 365 apps crash on Windows Server after Office update.
13. OneBlood confirms personal data stolen in July ransomware attack.
13. Microsoft: macOS bug lets hackers install malicious kernel drivers.
12. This Week in Security – January 12 – by Zack Whittaker.
12. Phishing texts trick Apple iMessage users into disabling protection.
11. Scammers file first – Get your IRS Identity Protection PIN now.
10. Diagnosing an issue – by Susan Bradley.
10. STIIIZY data breach exposes cannabis buyers’ IDs & purchases.
10. Microsoft to force install new Outlook on Windows 10 PCs in February.
09. MS-DEFCON 2: Kicking off the new year – by Susan Bradley.
09. Largest US addiction treatment provider notifies patients of data breach.
09. Banshee stealer evades detection using Apple XProtect encryption algo.
09. Microsoft fixes OneDrive bug that causes macOS app freezes.
09. Tails 6.11 out now with more protection against partitioning errors that can wipe data.
09. Microsoft fixes a bug causing Outlook to freeze when copying text.
09. Microsoft updates several Surface devices with audio & security improvements.
08. Medical billing firm Medusind discloses breach affecting 360,000 people.
08. Thousands of credit cards stolen in Green Bay Packers store breach.
07. Casio says data of 8,500 people exposed in October ransomware attack.
07. New Mirai botnet targets industrial routers with zero-day exploits.
07. January 2025 Office non-security updates are available.
07. Firefox 134 gets Windows hardware H.265 support, improves popup blocking, & more.
05. This Week in Security – January 5 – by Zack Whittaker.
04. New FireScam Android malware poses as RuStore app to steal data.
02. New DoubleClickjacking attack exploits double-clicks to hijack accounts.
02. Telegram gets another major update as platform becomes profitable.
01. Linux removes an outdated, insecure Microsoft USB network protocol still on Windows.
01. Do you have your first backup? – by Susan Bradley.
01. The biggest cybersecurity and cyberattack stories of 2024.

December 2024 (Click listings for more information).
31. New details reveal how hackers hijacked 35 Google Chrome extensions.
31. Massive healthcare breaches prompt US cybersecurity rules overhaul.
30. US Treasury Department breached through remote support platform.
30. AT&T and Verizon say networks secure after Salt Typhoon breach.
29. This Week in Security – December 29 – by Zack Whittaker.
29. Malware botnets exploit outdated D-Link routers in recent attacks.
28. US identifies 9th telecom hacked by China-based group Salt Typhoon.
28. Hackers steal ZAGG customers’ credit cards in third-party breach.
28. Customer data from 800,000 electric cars & owners exposed online.
27. White House links ninth telecom breach to Chinese hackers.
27. Cybersecurity firm’s Chrome extension hijacked to steal users’ data.
26. Windows 11 installation media bug causes security update failures.
26. Time to patch now – by Susan Bradley.
25. Windows 11 KB5048685 bugs break Start menu, Wi-Fi, & get stuck installing & restarting.
25. Microsoft confirms Windows 11 KB5044284 / KB5046617 can’t install new updates.
24. WhatsApp to stop supporting older Android phones starting January 2025.
24. Microsoft posts official uninstall & recovery guide for botched Windows 11/10 update.
24. MS-DEFCON 4: The gift of patching – by Susan Bradley.
23. Microsoft fixes bug behind random Office 365 deactivation errors.
22. This Week in Security – December 22 – by Zack Whittaker.
22. North Korean hackers stole $1.3 billion of crypto this year.
22. RCS messaging expands to more iPhone users in the US.
21. Microsoft lists why TPM & Secure Boot are required on Windows 11 in 2024-2025.
20. Google Chrome uses AI to analyze pages in new scam detection feature.
20. Reviewing the scams – by Susan Bradley.
20. Microsoft Account license bug, affecting Office 2024 installs, is fixed.
20. Ascension: Health data of 5.6 million stolen in ransomware attack.
20. Microsoft patches four security vulnerabilities in the latest Edge update.
20. Microsoft fixes PowerToys stability bugs for Windows 10, .NET 9 & Advanced Paste.
19. Microsoft 365 users hit by random product deactivation errors.
19. Android malware found on Amazon Appstore disguised as a health app.
18. Microsoft confirms even more Windows 11 24H2 bugs: audio output is now affected.
18. Microsoft blocks Windows 11 24H2 update on more PCs due to new gaming issues.
18. Ongoing phishing attacks abuse Google Calendar to bypass spam filters.
18. Does the no@thankyou.com still work? – by Susan Bradley.
18. VMware update is free with no license, fixes Windows 11 & Linux freezes & crashes.
17. Acronis backup & cloning app gets Windows 11 24H2 BitLocker support; won’t work on old CPUs.
17. Microsoft admits it didn’t fix Windows Outlook 0x80049dd3 sign-in bug.
16. Kali Linux 2024.4 released with 14 new tools, deprecates some features.
16. PowerToys 0.87 is out with a new utility for Windows 10 users & more.
16. Malicious ads push Lumma infostealer via fake CAPTCHA pages.
16. The Windows Outlook 0x80049dd3 bug is apparently still not fixed.
15. This Week in Security – December 15 – by Zack Whittaker.
13. FTC warns of online task job scams hooking victims like gambling.
13. Russian cyberspies target Android users with new spyware.
13. Microsoft confirms it’s not lowering Windows 11 system requirements for unsupported hardware.
13. Don’t forget to reboot – by Susan Bradley.
11. Microsoft lifts Windows 11 24H2 block on PCs with USB scanners.
11. Facebook, Instagram & WhatsApp hit by massive worldwide outage.
11. Microsoft shares requirements for file sharing between Windows 11/10 & Apple iPhones.
11. Krispy Kreme cyberattack impacts online orders and operations.
10. Windows 10 KB5048652 update fixes new motherboard activation bug.
10. Microsoft December Patch Tuesday fixes 1 exploited zero-day, 71 flaws.
10. Windows 11 KB5048667 & KB5048685 cumulative updates released.
10. Firefox 133.0.3 is out with fixes for missing scrollbars, incorrect window positioning & more.
10. Microsoft 365 outage takes down Office web apps & admin center.
09. Ubisoft fixes Windows 11 24H2 conflicts causing game crashes.
09. Outdated Google Workspace Sync blocks Windows 11 24H2 upgrades.
07. Microsoft confirms Outlook fails to start in Windows 11 24H2 with Google Workspace Sync.
06. New Windows zero-day exposes NTLM credentials, gets unofficial patch.
06. All Windows 11 & 10, Server versions affected by a new zero-day, unofficial patch out.
05. MS-DEFCON 2: Closing out the year – by Susan Bradley.
05. Microsoft launches Copilot Vision, a feature that can ‘understand what you are doing online’.
04. White House: Salt Typhoon hacked telcos in dozens of countries.
04. FBI shares tips on how to tackle AI-powered fraud schemes.
04. WinRAR on Windows 11 gets faster, 7-Zip & NanaZip receive improvements too.
03. Microsoft: TPM 2.0 requirement in Windows 11 is a ‘non-negotiable’ standard.
03. FTC bans data brokers from selling Americans’ sensitive location data.
03. Microsoft details Windows 11 2024 driver & firmware support for compatible Surfaces.
02. BootKitty UEFI malware exploits LogoFAIL to infect Linux systems.
01. This Week in Security – December 1 – by Zack Whittaker.
01. ICYMI: Microsoft released a new Windows 11/10 Defender update for installations.
01. Microsoft details how to install Windows 11 on an unsupported PC, not meeting requirements.
01. Novel phishing campaign uses corrupted Word documents to evade security.

4/A6Y2BsbQZhmz6XbH9WrwaHSTJdwvtAOdTOWqvlTSM1o.wplhENXo_gYVoiIBeO6P2m_yozPFlgI