March 3, 2021 at 09:17PM

■■□□□ Proof of concept code has been published for a vulnerability in popular data centre security management tool Saltstack, which was discovered after a developer at Immersive Labs found a privilege escalation bug allowing any old user to become root. https://www.theregister.com/2021/03/03/saltstack_cve_poc_exploit_code/ https://t.me/cKure/7033

March 3, 2021 at 08:53PM

■■■■■ Qualys #DataLeak Cybersecurity firm Qualys is the latest victim to have suffered a data breach after a zero-day vulnerability in their Accellion FTA server was exploited to steal hosted files. https://www.bleepingcomputer.com/news/security/cybersecurity-firm-qualys-likely-latest-victim-of-accellion-hacks/ https://t.me/cKure/7032

March 3, 2021 at 01:23PM

■□□□□ Leading payroll company PrismHR is suffering a massive outage after suffering a cyberattack this weekend that looks like a ransomware attack from conversations with customers. https://www.bleepingcomputer.com/news/security/payroll-giant-prismhr-outage-likely-caused-by-ransomware-attack/ https://t.me/cKure/7029

March 3, 2021 at 01:23PM

■□□□□ Leading payroll company PrismHR is suffering a massive outage after suffering a cyberattack this weekend that looks like a ransomware attack from conversations with customers. https://www.bleepingcomputer.com/news/security/payroll-giant-prismhr-outage-likely-caused-by-ransomware-attack/ https://t.me/cKure/7029

March 3, 2021 at 09:01AM

■■■■■ Google fixes second actively exploited Chrome zero-day bug this year. CVE-2021-21166 https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop.html?m=1 https://www.bleepingcomputer.com/news/security/google-fixes-second-actively-exploited-chrome-zero-day-bug-this-year/ https://t.me/cKure/7027

March 3, 2021 at 08:58AM

■■■■■ Google addressed 37 vulnerabilities with the release of the Android security updates for March 2021, including a Remote Code Execution flaw in the Android System component. 5 out of 27 issues were rated as critical (CVE-2020-11192, CVE-2020-11204, CVE-2020-11218, CVE-2020-11227, CVE-2020-11228) and affect Qualcomm’s closed-source components. https://source.android.com/security/bulletin/2021-03-01 https://t.me/cKure/7026