ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force, 17-Year-Old Excel RCE and 15 More Stories
Briefly

ThreatsDay Bulletin: Defender 0-Day, SonicWall Brute-Force, 17-Year-Old Excel RCE and 15 More Stories
"A researcher using the alias 'Chaotic Eclipse' released a zero-day exploit called BlueHammer, which has since been fixed, but a new vulnerability named RedSun remains unpatched."
"The fake Ledger app, published under 'Leva Heal Limited,' tricked users into entering their seed phrases, resulting in a loss of $9.5 million in cryptocurrency."
A zero-day exploit named BlueHammer was released by a researcher after Microsoft’s vulnerability disclosure process. A new unpatched vulnerability, RedSun, allows privilege escalation on Windows systems. A fraudulent Ledger app on the Apple App Store drained $9.5 million from users by tricking them into entering their seed phrases. Although Apple removed the app, concerns about its approval process persist. Some threat actors were exposed, and platforms improved security measures, alongside valuable research findings.
Read at The Hacker News
Unable to calculate read time
[
|
]