March 12, 2021 at 01:45PM

■□□□□ Microsoft’s GitHub under fire after disappearing proof-of-concept exploit for critical Microsoft Exchange vuln. On Wednesday, shortly after security researcher Nguyen Jang posted a proof-of-concept exploit on GitHub that abuses a Microsoft Exchange vulnerability revealed earlier this month, GitHub, which is owned by Microsoft, removed code, to the alarm of security researchers. https://t.me/cKure/7139

March 12, 2021 at 01:44PM

■■■□□ New DEARCRY Ransomware is targeting Microsoft Exchange Servers. https://www.bleepingcomputer.com/news/security/new-dearcry-ransomware-is-targeting-microsoft-exchange-servers/ https://t.me/cKure/7138

March 12, 2021 at 12:06PM

■■■■■ Browser exploit via side channel attack: Researchers have discovered a new side-channel that they say can be reliably exploited to leak information from web browsers that could then be leveraged to track users even when JavaScript is completely disabled. “This is a side-channel attack which doesn’t require any JavaScript to run,” the researchers said.…

March 11, 2021 at 04:07PM

■□□□□ The security loophole in the Plus Addons for Elementor plugin of WordPress was used in active zero-day attacks prior to a patch being issued. https://threatpost.com/cyberattackers-exploiting-critical-wordpress-plugin-bug/164663/ https://t.me/cKure/7124