New PlunderVolt Attack Targets Intel SGX Enclaves by Tweaking CPU Voltage

Intel SGX Plundervolt Attack

A team of cybersecurity researchers demonstrated a novel yet another technique to hijack Intel SGX, a hardware-isolated trusted space on modern Intel CPUs that encrypts extremely sensitive data to shield it from attackers even when a system gets compromised. Dubbed Plundervolt and tracked as CVE-2019-11157, the attack relies on the fact that modern processors allow Leggi tutto…

Latest Microsoft Update Patches New Windows 0-Day Under Active Attack

Microsoft Updates

With its latest and last Patch Tuesday for 2019, Microsoft is warning billions of its users of a new Windows zero-day vulnerability that attackers are actively exploiting in the wild in combination with a Chrome exploit to take remote control over vulnerable computers. Microsoft’s December security updates include patches for a total of 36 vulnerabilities, Leggi tutto…

Adobe Releases Patches for ‘Likely Exploitable’ Critical Vulnerabilities

adobe software update

The last Patch Tuesday of 2019 is finally here. Adobe today released updates for four of its widely used software—including Adobe Acrobat and Reader, Photoshop CC, ColdFusion, and Brackets—to patch a total of 25 new security vulnerabilities. Seventeen of these flaws have been rated as critical in severity, with most of them carrying high priority Leggi tutto…

Snatch Ransomware Reboots Windows in Safe Mode to Bypass Antivirus

windows safe mode malware

Cybersecurity researchers have spotted a new variant of the Snatch ransomware that first reboots infected Windows computers into Safe Mode and only then encrypts victims’ files to avoid antivirus detection. Unlike traditional malware, the new Snatch ransomware chooses to run in Safe Mode because in the diagnostic mode Windows operating system starts with a minimal Leggi tutto…