March 3, 2021 at 09:01AM

■■■■■ Google fixes second actively exploited Chrome zero-day bug this year. CVE-2021-21166 https://chromereleases.googleblog.com/2021/03/stable-channel-update-for-desktop.html?m=1 https://www.bleepingcomputer.com/news/security/google-fixes-second-actively-exploited-chrome-zero-day-bug-this-year/ https://t.me/cKure/7027

March 3, 2021 at 08:58AM

■■■■■ Google addressed 37 vulnerabilities with the release of the Android security updates for March 2021, including a Remote Code Execution flaw in the Android System component. 5 out of 27 issues were rated as critical (CVE-2020-11192, CVE-2020-11204, CVE-2020-11218, CVE-2020-11227, CVE-2020-11228) and affect Qualcomm’s closed-source components. https://source.android.com/security/bulletin/2021-03-01 https://t.me/cKure/7026

March 3, 2021 at 08:44AM

The Microsoft Exchange #0day exploits were abused by Chinese hackers / Hafnium. https://blogs.microsoft.com/on-the-issues/2021/03/02/new-nation-state-cyberattacks/ #china https://t.me/cKure/7023

March 3, 2021 at 08:41AM

■■□□□ The Fortune-500 hospital network owner (Universal Health Services) is facing steep costs in damages after a cyberattack impacted patient care and billing in September and October. #CyberCrime https://threatpost.com/post-cyberattack-universal-health-services-faces-67m-in-losses/164424/ https://t.me/cKure/7022

March 3, 2021 at 08:03AM

■■■■■ Four zero-days in Microsoft Exchange actively exploited in the wild. https://securityaffairs.co/wordpress/115194/hacking/microsoft-exchange-zero-days.html #0day #Zeroday https://t.me/cKure/7021

March 2, 2021 at 02:29PM

■■□□□ Perl.com theft blamed on social engineering attack: Registrar ‘convinced’ to alter DNS records by miscreants https://www.theregister.com/2021/03/02/perl_domain_theft/ https://t.me/cKure/7017